1 /* ***** BEGIN LICENSE BLOCK *****
2 * Version: MPL 1.1/GPL 2.0/LGPL 2.1
4 * The contents of this file are subject to the Mozilla Public License Version
5 * 1.1 (the "License"); you may not use this file except in compliance with
6 * the License. You may obtain a copy of the License at
7 * http://www.mozilla.org/MPL/
9 * Software distributed under the License is distributed on an "AS IS" basis,
10 * WITHOUT WARRANTY OF ANY KIND, either express or implied. See the License
11 * for the specific language governing rights and limitations under the
14 * The Original Code is the Netscape security libraries.
16 * The Initial Developer of the Original Code is
17 * Netscape Communications Corporation.
18 * Portions created by the Initial Developer are Copyright (C) 1994-2000
19 * the Initial Developer. All Rights Reserved.
23 * Alternatively, the contents of this file may be used under the terms of
24 * either the GNU General Public License Version 2 or later (the "GPL"), or
25 * the GNU Lesser General Public License Version 2.1 or later (the "LGPL"),
26 * in which case the provisions of the GPL or the LGPL are applicable instead
27 * of those above. If you wish to allow use of your version of this file only
28 * under the terms of either the GPL or the LGPL, and not to allow others to
29 * use your version of this file under the terms of the MPL, indicate your
30 * decision by deleting the provisions above and replace them with the notice
31 * and other provisions required by the GPL or the LGPL. If you do not delete
32 * the provisions above, a recipient may use your version of this file under
33 * the terms of any one of the MPL, the GPL or the LGPL.
35 * ***** END LICENSE BLOCK ***** */
41 static const char PKISTORE_CVS_ID
[] = "@(#) $RCSfile: pkistore.h,v $ $Revision: 1.10 $ $Date: 2006/08/22 03:30:14 $";
46 #endif /* NSSPKIT_H */
57 * This is a set of routines for managing local stores of PKI objects.
58 * Currently, the only application is in crypto contexts, where the
59 * certificate store is used. In the future, methods should be added
60 * here for storing local references to keys.
66 * Manages local store of certificate, trust, and S/MIME profile objects.
67 * Within a crypto context, mappings of cert to trust and cert to S/MIME
68 * profile are always 1-1. Therefore, it is reasonable to store all objects
69 * in a single collection, indexed by the certificate.
72 NSS_EXTERN nssCertificateStore
*
73 nssCertificateStore_Create
79 nssCertificateStore_Destroy
81 nssCertificateStore
*store
84 /* Atomic Find cert in store, or add this cert to the store.
85 ** Ref counts properly maintained.
87 NSS_EXTERN NSSCertificate
*
88 nssCertificateStore_FindOrAdd
90 nssCertificateStore
*store
,
95 nssCertificateStore_RemoveCertLOCKED
97 nssCertificateStore
*store
,
101 struct nssCertificateStoreTraceStr
{
102 nssCertificateStore
* store
;
108 typedef struct nssCertificateStoreTraceStr nssCertificateStoreTrace
;
110 static void nssCertificateStore_Check(nssCertificateStoreTrace
* a
,
111 nssCertificateStoreTrace
* b
) {
112 PORT_Assert(a
->locked
);
113 PORT_Assert(b
->unlocked
);
115 PORT_Assert(!a
->unlocked
);
116 PORT_Assert(!b
->locked
);
118 PORT_Assert(a
->lock
== b
->lock
);
119 PORT_Assert(a
->store
== b
->store
);
123 nssCertificateStore_Lock (
124 nssCertificateStore
*store
, nssCertificateStoreTrace
* out
128 nssCertificateStore_Unlock (
129 nssCertificateStore
*store
, nssCertificateStoreTrace
* in
,
130 nssCertificateStoreTrace
* out
133 NSS_EXTERN NSSCertificate
**
134 nssCertificateStore_FindCertificatesBySubject
136 nssCertificateStore
*store
,
138 NSSCertificate
*rvOpt
[],
143 NSS_EXTERN NSSCertificate
**
144 nssCertificateStore_FindCertificatesByNickname
146 nssCertificateStore
*store
,
148 NSSCertificate
*rvOpt
[],
153 NSS_EXTERN NSSCertificate
**
154 nssCertificateStore_FindCertificatesByEmail
156 nssCertificateStore
*store
,
158 NSSCertificate
*rvOpt
[],
163 NSS_EXTERN NSSCertificate
*
164 nssCertificateStore_FindCertificateByIssuerAndSerialNumber
166 nssCertificateStore
*store
,
171 NSS_EXTERN NSSCertificate
*
172 nssCertificateStore_FindCertificateByEncodedCertificate
174 nssCertificateStore
*store
,
179 nssCertificateStore_AddTrust
181 nssCertificateStore
*store
,
185 NSS_EXTERN NSSTrust
*
186 nssCertificateStore_FindTrustForCertificate
188 nssCertificateStore
*store
,
193 nssCertificateStore_AddSMIMEProfile
195 nssCertificateStore
*store
,
196 nssSMIMEProfile
*profile
199 NSS_EXTERN nssSMIMEProfile
*
200 nssCertificateStore_FindSMIMEProfileForCertificate
202 nssCertificateStore
*store
,
207 nssCertificateStore_DumpStoreInfo
209 nssCertificateStore
*store
,
210 void (* cert_dump_iter
)(const void *, void *, void *),
216 #endif /* PKISTORE_H */