Uploaded image for project: 'EJBCA'
  1. EJBCA
  2. ECA-2264

Support for certificate extensions with raw and/or dynamic value

    Details

    • Type: New Feature
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: EJBCA 4.0.4
    • Component/s: PKI core
    • Labels:
      None

      Description

      Add support for certificate extensions to return the extension value as a byte array not necessarily being an ASN.1 structure. This byte array should be added to the certificate extension value directly as an DER OCTET STRING and not encapsulated in an additional structure as for the other extensions.

      Add support in BasicCertificateExtension for this new "RAW" type of encoding.

      Add a place in the ExtendedInformation (part of the user data) to store extension data such as the value that could be used by CertificateExtensionS in a more dynamic way than the static value specified in certextensions.properties.

      Add support in BasicCertificateExtension to, if configured in "dynamic mode", use the value from ExtendedInformation.

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              markus Markus Kilås
              Reporter:
              markus Markus Kilås
              Verified by:
              Tomas Gustavsson
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: