-
Notifications
You must be signed in to change notification settings - Fork 73
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
There are some use-cases where interrogating the structure of a CMS signature is necessary. This patch adds an SPI for looking at a CMS signature. As with the rest of our CMS operations, we're not willing to commit to an API shape yet, so this patch doesn't provide one. Instead, users need to opt-in to using the unstable API.
- Loading branch information
Showing
11 changed files
with
146 additions
and
7 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
79 changes: 79 additions & 0 deletions
79
Sources/X509/CryptographicMessageSyntax/CMSSignature.swift
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,79 @@ | ||
//===----------------------------------------------------------------------===// | ||
// | ||
// This source file is part of the SwiftCertificates open source project | ||
// | ||
// Copyright (c) 2023 Apple Inc. and the SwiftCertificates project authors | ||
// Licensed under Apache License v2.0 | ||
// | ||
// See LICENSE.txt for license information | ||
// See CONTRIBUTORS.txt for the list of SwiftCertificates project authors | ||
// | ||
// SPDX-License-Identifier: Apache-2.0 | ||
// | ||
//===----------------------------------------------------------------------===// | ||
|
||
import SwiftASN1 | ||
|
||
/// A representation of a CMS signature over some data. | ||
/// | ||
/// This type hides the specifics of how CMS represents data, instead offering a limited | ||
/// view over a CMS signed-data payload. It also abstracts the specific ASN.1 layout of the | ||
/// signature. | ||
@_spi(CMS) | ||
public struct CMSSignature: Sendable, Hashable { | ||
@usableFromInline | ||
let base: CMSSignedData | ||
|
||
/// Returns the certificates associated with the signers | ||
@inlinable | ||
public var signers: [Signer] { | ||
get throws { | ||
try self.base.signerInfos.compactMap { signerInfo in | ||
try self.base.certificates?.certificate(signerInfo: signerInfo).map { Signer(certificate: $0) } | ||
} | ||
} | ||
} | ||
|
||
/// The certificates in the signature. | ||
@inlinable | ||
public var certificates: [Certificate] { | ||
self.base.certificates ?? [] | ||
} | ||
} | ||
|
||
extension CMSSignature: DERImplicitlyTaggable { | ||
@inlinable | ||
public static var defaultIdentifier: ASN1Identifier { | ||
CMSContentInfo.defaultIdentifier | ||
} | ||
|
||
@inlinable | ||
public init(derEncoded rootNode: ASN1Node, withIdentifier identifier: ASN1Identifier) throws { | ||
guard let base = try CMSContentInfo(derEncoded: rootNode, withIdentifier: identifier).signedData, base.version == .v1 else { | ||
throw CMS.Error.unexpectedCMSType | ||
} | ||
|
||
self.base = base | ||
} | ||
|
||
@inlinable | ||
public func serialize(into coder: inout DER.Serializer, withIdentifier identifier: ASN1Identifier) throws { | ||
try CMSContentInfo(self.base).serialize(into: &coder, withIdentifier: identifier) | ||
} | ||
} | ||
|
||
extension CMSSignature { | ||
/// One of the "signers" that produced a given CMS block. | ||
/// | ||
/// Note that the signer has not been validated, so it is possible that the signer did not actually | ||
/// sign the block in question. | ||
@_spi(CMS) | ||
public struct Signer: Sendable, Hashable { | ||
public let certificate: Certificate | ||
|
||
@inlinable | ||
init(certificate: Certificate) { | ||
self.certificate = certificate | ||
} | ||
} | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters