2
# The contents of this file are subject to the Mozilla Public
3
# License Version 1.1 (the "License"); you may not use this file
4
# except in compliance with the License. You may obtain a copy of
5
# the License at http://www.mozilla.org/MPL/
7
# Software distributed under the License is distributed on an "AS
8
# IS" basis, WITHOUT WARRANTY OF ANY KIND, either express or
9
# implied. See the License for the specific language governing
10
# rights and limitations under the License.
12
# The Original Code is the Netscape security libraries.
14
# The Initial Developer of the Original Code is Netscape
15
# Communications Corporation. Portions created by Netscape are
16
# Copyright (C) 1994-2000 Netscape Communications Corporation. All
21
# Alternatively, the contents of this file may be used under the
22
# terms of the GNU General Public License Version 2 or later (the
23
# "GPL"), in which case the provisions of the GPL are applicable
24
# instead of those above. If you wish to allow use of your
25
# version of this file only under the terms of the GPL and not to
26
# allow others to use your version of this file under the MPL,
27
# indicate your decision by deleting the provisions above and
28
# replace them with the notice and other provisions required by
29
# the GPL. If you do not delete the provisions above, a recipient
30
# may use your version of this file under either the MPL or the
33
CVS_ID "@(#) $RCSfile: oids.txt,v $ $Revision: 1.1 $ $Date: 2000/03/31 19:16:23 $ $Name: FIREFOX_1_0_RELEASE $"
36
# OID -- the OID data itself, in dotted-number format
37
# TAG -- the unofficial but common name. e.g., when written like
38
# { joint-iso-ccitt(2) country(16) US(840) company(1) netscape(113730) }
39
# those words ("joint-iso-ccitt," "country," etc.) are the tags.
40
# EXPL -- a textual explanation, that should stand by itself
41
# NAME -- the name we use in our code. If no NAME is given, it won't be included
43
# Additionally, some sets of OIDs map to some other spaces..
44
# additional fields capture that data:
46
# CKM -- the corresponding Cryptoki Mechanism, if any
47
# CKK -- the corresponding Cryptoki Key type, if any
48
# ATTR -- the UTF-8 attribute type encoding, if applicable
49
# it should be in the standard presentation style (e.g., lowercase),
50
# already-escaped a la RFC 2253 if necessary (which would only
51
# be necessary if some idiot defined an attribute with, say,
52
# an equals sign in it)
53
# CERT_EXTENSION -- SUPPORTED or UNSUPPORTED certificate extension, if applicable
55
# Top of the OID tree -- see http://www.alvestrand.no/objectid/top.html
58
TAG ccitt # ITU-T used to be called CCITT
61
# See X.208 Annex C for an explanation of the OIDs below ccitt/itu-t
65
EXPL "ITU-T Recommendation"
73
EXPL "ITU-T Administration"
77
EXPL "ITU-T Network Operator"
80
TAG identified-organization
81
EXPL "ITU-T Identified Organization"
83
OID 0.9 # used in some RFCs (unofficial!)
89
EXPL "PSS British Telecom X.25 Network"
93
EXPL "RFC 1274 UCL Data networks"
95
OID 0.9.2342.19200300.100
99
OID 0.9.2342.19200300.100.1
101
EXPL "RFC 1274 Attribute Type"
103
OID 0.9.2342.19200300.100.1.1
105
EXPL "RFC 1274 User Id"
106
NAME NSS_OID_RFC1274_UID
109
OID 0.9.2342.19200300.100.1.3
111
EXPL "RFC 1274 E-mail Addres"
112
NAME NSS_OID_RFC1274_EMAIL
113
ATTR "mail" # XXX fgmr
115
OID 0.9.2342.19200300.100.1.25
117
EXPL "RFC 2247 Domain Component"
118
NAME NSS_OID_RFC2247_DC
121
OID 0.9.2342.19200300.100.3
123
EXPL "RFC 1274 Attribute Syntax"
125
OID 0.9.2342.19200300.100.3.4
127
EXPL "RFC 1274 IA5 String Attribute Syntax"
129
OID 0.9.2342.19200300.100.3.5
130
TAG caseIgnoreIA5StringSyntax
131
EXPL "RFC 1274 Case-Ignore IA5 String Attribute Syntax"
133
OID 0.9.2342.19200300.100.4
135
EXPL "RFC 1274 Object Class"
137
OID 0.9.2342.19200300.100.10
139
EXPL "RFC 1274 Groups"
141
OID 0.9.2342.234219200300
149
# See X.208 Annex B for an explanation of the OIDs below iso
156
TAG registration-authority
157
EXPL "ISO Registration Authority"
161
EXPL "ISO Member Body"
165
EXPL "Australia (ISO)"
185
EXPL "Great Britain (ISO)"
189
EXPL "United States (ISO)"
193
EXPL "US (ISO) organization"
221
# holdInstruction OBJECT IDENTIFIER ::=
222
# {iso(1) member-body(2) us(840) x9cm(10040) 2}
224
# Note that the appendices of RFC 2459 define the (wrong) value
225
# of 2.2.840.10040.2 for this oid.
228
EXPL "ANSI X9.57 Hold Instruction"
232
# id-holdinstruction-none OBJECT IDENTIFIER ::=
233
# {holdInstruction 1} -- deprecated
234
OID 1.2.840.10040.2.1
235
TAG id-holdinstruction-none
236
EXPL "ANSI X9.57 Hold Instruction: None"
240
# id-holdinstruction-callissuer OBJECT IDENTIFIER ::=
241
# {holdInstruction 2}
242
OID 1.2.840.10040.2.2
243
TAG id-holdinstruction-callissuer
244
EXPL "ANSI X9.57 Hold Instruction: Call Issuer"
248
# id-holdinstruction-reject OBJECT IDENTIFIER ::=
249
# {holdInstruction 3}
250
OID 1.2.840.10040.2.3
251
TAG id-holdinstruction-reject
252
EXPL "ANSI X9.57 Hold Instruction: Reject"
256
EXPL "ANSI X9.57 Algorithm"
260
# id-dsa OBJECT IDENTIFIER ::= {
261
# iso(1) member-body(2) us(840) x9-57(10040) x9algorithm(4) 1 }
262
OID 1.2.840.10040.4.1
264
EXPL "ANSI X9.57 DSA Signature"
265
NAME NSS_OID_ANSIX9_DSA_SIGNATURE
271
# id-dsa-with-sha1 OBJECT IDENTIFIER ::= {
272
# iso(1) member-body(2) us(840) x9-57 (10040) x9algorithm(4) 3 }
273
OID 1.2.840.10040.4.3
275
EXPL "ANSI X9.57 Algorithm DSA Signature with SHA-1 Digest"
276
NAME NSS_OID_ANSIX9_DSA_SIGNATURE_WITH_SHA1_DIGEST
285
EXPL "ANSI X9.42 Algorithm"
289
# dhpublicnumber OBJECT IDENTIFIER ::= {
290
# iso(1) member-body(2) us(840) ansi-x942(10046) number-type(2) 1 }
291
OID 1.2.840.10046.2.1
293
EXPL "Diffie-Hellman Public Key Algorithm"
294
NAME NSS_OID_X942_DIFFIE_HELMAN_KEY
295
CKM CKM_DH_PKCS_DERIVE
300
EXPL "Entrust Technologies"
304
EXPL "RSA Data Security Inc."
307
# http://www.rsa.com/rsalabs/pubs/PKCS/
313
# pkcs-1 OBJECT IDENTIFIER ::= {
314
# iso(1) member-body(2) us(840) rsadsi(113549) pkcs(1) 1 }
315
OID 1.2.840.113549.1.1
316
# ftp://ftp.rsa.com/pub/pkcs/ascii/pkcs-1.asc
322
# rsaEncryption OBJECT IDENTIFIER ::= { pkcs-1 1 }
323
OID 1.2.840.113549.1.1.1
325
EXPL "PKCS #1 RSA Encryption"
326
NAME NSS_OID_PKCS1_RSA_ENCRYPTION
332
# md2WithRSAEncryption OBJECT IDENTIFIER ::= { pkcs-1 2 }
333
OID 1.2.840.113549.1.1.2
334
TAG md2WithRSAEncryption
335
EXPL "PKCS #1 MD2 With RSA Encryption"
336
NAME NSS_OID_PKCS1_MD2_WITH_RSA_ENCRYPTION
339
OID 1.2.840.113549.1.1.3
340
TAG md4WithRSAEncryption
341
EXPL "PKCS #1 MD4 With RSA Encryption"
342
NAME NSS_OID_PKCS1_MD4_WITH_RSA_ENCRYPTION
347
# md5WithRSAEncryption OBJECT IDENTIFIER ::= { pkcs-1 4 }
348
OID 1.2.840.113549.1.1.4
349
TAG md5WithRSAEncryption
350
EXPL "PKCS #1 MD5 With RSA Encryption"
351
NAME NSS_OID_PKCS1_MD5_WITH_RSA_ENCRYPTION
356
# sha1WithRSAEncryption OBJECT IDENTIFIER ::= { pkcs-1 5 }
357
OID 1.2.840.113549.1.1.5
358
TAG sha1WithRSAEncryption
359
EXPL "PKCS #1 SHA-1 With RSA Encryption"
360
NAME NSS_OID_PKCS1_SHA1_WITH_RSA_ENCRYPTION
361
CKM CKM_SHA1_RSA_PKCS
363
OID 1.2.840.113549.1.5
364
# ftp://ftp.rsa.com/pub/pkcs/ascii/pkcs-5.asc
368
OID 1.2.840.113549.1.5.1
369
TAG pbeWithMD2AndDES-CBC
370
EXPL "PKCS #5 Password Based Encryption With MD2 and DES-CBC"
371
NAME NSS_OID_PKCS5_PBE_WITH_MD2_AND_DES_CBC
372
CKM CKM_PBE_MD2_DES_CBC
374
OID 1.2.840.113549.1.5.3
375
TAG pbeWithMD5AndDES-CBC
376
EXPL "PKCS #5 Password Based Encryption With MD5 and DES-CBC"
377
NAME NSS_OID_PKCS5_PBE_WITH_MD5_AND_DES_CBC
378
CKM CKM_PBE_MD5_DES_CBC
380
OID 1.2.840.113549.1.5.10
381
TAG pbeWithSha1AndDES-CBC
382
EXPL "PKCS #5 Password Based Encryption With SHA-1 and DES-CBC"
383
NAME NSS_OID_PKCS5_PBE_WITH_SHA1_AND_DES_CBC
384
CKM CKM_NETSCAPE_PBE_SHA1_DES_CBC
386
OID 1.2.840.113549.1.7
387
# ftp://ftp.rsa.com/pub/pkcs/ascii/pkcs-7.asc
392
OID 1.2.840.113549.1.7.1
395
NAME NSS_OID_PKCS7_DATA
397
OID 1.2.840.113549.1.7.2
399
EXPL "PKCS #7 Signed Data"
400
NAME NSS_OID_PKCS7_SIGNED_DATA
402
OID 1.2.840.113549.1.7.3
404
EXPL "PKCS #7 Enveloped Data"
405
NAME NSS_OID_PKCS7_ENVELOPED_DATA
407
OID 1.2.840.113549.1.7.4
408
TAG signedAndEnvelopedData
409
EXPL "PKCS #7 Signed and Enveloped Data"
410
NAME NSS_OID_PKCS7_SIGNED_ENVELOPED_DATA
412
OID 1.2.840.113549.1.7.5
414
EXPL "PKCS #7 Digested Data"
415
NAME NSS_OID_PKCS7_DIGESTED_DATA
417
OID 1.2.840.113549.1.7.6
419
EXPL "PKCS #7 Encrypted Data"
420
NAME NSS_OID_PKCS7_ENCRYPTED_DATA
424
# pkcs-9 OBJECT IDENTIFIER ::=
425
# { iso(1) member-body(2) us(840) rsadsi(113549) pkcs(1) 9 }
426
OID 1.2.840.113549.1.9
427
# ftp://ftp.rsa.com/pub/pkcs/ascii/pkcs-9.asc
433
# emailAddress AttributeType ::= { pkcs-9 1 }
434
OID 1.2.840.113549.1.9.1
436
EXPL "PKCS #9 Email Address"
437
NAME NSS_OID_PKCS9_EMAIL_ADDRESS
439
OID 1.2.840.113549.1.9.2
441
EXPL "PKCS #9 Unstructured Name"
442
NAME NSS_OID_PKCS9_UNSTRUCTURED_NAME
444
OID 1.2.840.113549.1.9.3
446
EXPL "PKCS #9 Content Type"
447
NAME NSS_OID_PKCS9_CONTENT_TYPE
449
OID 1.2.840.113549.1.9.4
451
EXPL "PKCS #9 Message Digest"
452
NAME NSS_OID_PKCS9_MESSAGE_DIGEST
454
OID 1.2.840.113549.1.9.5
456
EXPL "PKCS #9 Signing Time"
457
NAME NSS_OID_PKCS9_SIGNING_TIME
459
OID 1.2.840.113549.1.9.6
461
EXPL "PKCS #9 Counter Signature"
462
NAME NSS_OID_PKCS9_COUNTER_SIGNATURE
464
OID 1.2.840.113549.1.9.7
465
TAG challengePassword
466
EXPL "PKCS #9 Challenge Password"
467
NAME NSS_OID_PKCS9_CHALLENGE_PASSWORD
469
OID 1.2.840.113549.1.9.8
470
TAG unstructuredAddress
471
EXPL "PKCS #9 Unstructured Address"
472
NAME NSS_OID_PKCS9_UNSTRUCTURED_ADDRESS
474
OID 1.2.840.113549.1.9.9
475
TAG extendedCertificateAttributes
476
EXPL "PKCS #9 Extended Certificate Attributes"
477
NAME NSS_OID_PKCS9_EXTENDED_CERTIFICATE_ATTRIBUTES
479
OID 1.2.840.113549.1.9.15
480
TAG sMIMECapabilities
481
EXPL "PKCS #9 S/MIME Capabilities"
482
NAME NSS_OID_PKCS9_SMIME_CAPABILITIES
484
OID 1.2.840.113549.1.9.20
486
EXPL "PKCS #9 Friendly Name"
487
NAME NSS_OID_PKCS9_FRIENDLY_NAME
489
OID 1.2.840.113549.1.9.21
491
EXPL "PKCS #9 Local Key ID"
492
NAME NSS_OID_PKCS9_LOCAL_KEY_ID
494
OID 1.2.840.113549.1.9.22
496
EXPL "PKCS #9 Certificate Types"
498
OID 1.2.840.113549.1.9.22.1
500
EXPL "PKCS #9 Certificate Type = X.509"
501
NAME NSS_OID_PKCS9_X509_CERT
503
OID 1.2.840.113549.1.9.22.2
505
EXPL "PKCS #9 Certificate Type = SDSI"
506
NAME NSS_OID_PKCS9_SDSI_CERT
508
OID 1.2.840.113549.1.9.23
510
EXPL "PKCS #9 Certificate Revocation List Types"
512
OID 1.2.840.113549.1.9.23.1
514
EXPL "PKCS #9 CRL Type = X.509"
515
NAME NSS_OID_PKCS9_X509_CRL
517
OID 1.2.840.113549.1.12
518
# http://www.rsa.com/rsalabs/pubs/PKCS/html/pkcs-12.html
519
# NOTE -- PKCS #12 multiple contradictory
520
# documents exist. Somebody go figure out the canonical
521
# OID list, keeping in mind backwards-compatability..
526
OID 1.2.840.113549.1.12.1
528
EXPL "PKCS #12 Password Based Encryption IDs"
529
NAME NSS_OID_PKCS12_PBE_IDS
530
# We called it SEC_OID_PKCS12_MODE_IDS
532
OID 1.2.840.113549.1.12.1.1
533
TAG pbeWithSHA1And128BitRC4
534
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 128-bit RC4"
535
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_128_BIT_RC4
536
CKM CKM_NETSCAPE_PBE_SHA1_128_BIT_RC4
537
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_128_BIT_RC4
539
OID 1.2.840.113549.1.12.1.2
540
TAG pbeWithSHA1And40BitRC4
541
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 40-bit RC4"
542
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_40_BIT_RC4
543
CKM CKM_NETSCAPE_PBE_SHA1_40_BIT_RC4
544
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_40_BIT_RC4
546
OID 1.2.840.113549.1.12.1.3
547
TAG pbeWithSHA1And3-KeyTripleDES-CBC
548
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 3-key Triple DES-CBC"
549
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_3_KEY_TRIPLE_DES_CBC
550
CKM CKM_NETSCAPE_PBE_SHA1_TRIPLE_DES_CBC
551
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_3KEY_TRIPLE_DES_CBC
553
OID 1.2.840.113549.1.12.1.4
554
TAG pbeWithSHA1And2-KeyTripleDES-CBC
555
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 2-key Triple DES-CBC"
556
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_2_KEY_TRIPLE_DES_CBC
557
CKM CKM_PBE_SHA1_DES2_EDE_CBC
558
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_2KEY_TRIPLE_DES_CBC
560
OID 1.2.840.113549.1.12.1.5
561
TAG pbeWithSHA1And128BitRC2-CBC
562
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 128-bit RC2-CBC"
563
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_128_BIT_RC2_CBC
564
CKM CKM_NETSCAPE_PBE_SHA1_128_BIT_RC2_CBC
565
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_128_BIT_RC2_CBC
567
OID 1.2.840.113549.1.12.1.6
568
TAG pbeWithSHA1And40BitRC2-CBC
569
EXPL "PKCS #12 Password Based Encryption With SHA-1 and 40-bit RC2-CBC"
570
NAME NSS_OID_PKCS12_PBE_WITH_SHA1_AND_40_BIT_RC2_CBC
571
CKM CKM_NETSCAPE_PBE_SHA1_40_BIT_RC2_CBC
572
# We called it SEC_OID_PKCS12_V2_PBE_WITH_SHA1_AND_40_BIT_RC2_CBC
574
OID 1.2.840.113549.1.12.2
576
EXPL "PKCS #12 ESPVK IDs"
577
# We called it SEC_OID_PKCS12_ESPVK_IDS
579
OID 1.2.840.113549.1.12.2.1
580
TAG pkcs8-key-shrouding
581
EXPL "PKCS #12 Key Shrouding"
582
# We called it SEC_OID_PKCS12_PKCS8_KEY_SHROUDING
584
OID 1.2.840.113549.1.12.3
585
TAG draft1Pkcs-12Bag-ids
586
EXPL "Draft 1.0 PKCS #12 Bag IDs"
587
# We called it SEC_OID_PKCS12_BAG_IDS
589
OID 1.2.840.113549.1.12.3.1
591
EXPL "Draft 1.0 PKCS #12 Key Bag"
592
# We called it SEC_OID_PKCS12_KEY_BAG_ID
594
OID 1.2.840.113549.1.12.3.2
596
EXPL "Draft 1.0 PKCS #12 Cert and CRL Bag ID"
597
# We called it SEC_OID_PKCS12_CERT_AND_CRL_BAG_ID
599
OID 1.2.840.113549.1.12.3.3
601
EXPL "Draft 1.0 PKCS #12 Secret Bag ID"
602
# We called it SEC_OID_PKCS12_SECRET_BAG_ID
604
OID 1.2.840.113549.1.12.3.4
606
EXPL "Draft 1.0 PKCS #12 Safe Contents Bag ID"
607
# We called it SEC_OID_PKCS12_SAFE_CONTENTS_ID
609
OID 1.2.840.113549.1.12.3.5
610
TAG pkcs-8ShroudedKeyBagId
611
EXPL "Draft 1.0 PKCS #12 PKCS #8-shrouded Key Bag ID"
612
# We called it SEC_OID_PKCS12_PKCS8_SHROUDED_KEY_BAG_ID
614
OID 1.2.840.113549.1.12.4
615
TAG pkcs-12CertBagIds
616
EXPL "PKCS #12 Certificate Bag IDs"
617
# We called it SEC_OID_PKCS12_CERT_BAG_IDS
619
OID 1.2.840.113549.1.12.4.1
621
EXPL "PKCS #12 X.509 Certificate and CRL Bag"
622
# We called it SEC_OID_PKCS12_X509_CERT_CRL_BAG
624
OID 1.2.840.113549.1.12.4.2
626
EXPL "PKCS #12 SDSI Certificate Bag"
627
# We called it SEC_OID_PKCS12_SDSI_CERT_BAG
629
OID 1.2.840.113549.1.12.5
631
EXPL "PKCS #12 OIDs (XXX)"
632
# We called it SEC_OID_PKCS12_OIDS
634
OID 1.2.840.113549.1.12.5.1
636
EXPL "PKCS #12 OIDs PBE IDs (XXX)"
637
# We called it SEC_OID_PKCS12_PBE_IDS
639
OID 1.2.840.113549.1.12.5.1.1
640
TAG pbeWithSha1And128BitRC4
641
EXPL "PKCS #12 OIDs PBE with SHA-1 and 128-bit RC4 (XXX)"
642
CKM CKM_NETSCAPE_PBE_SHA1_128_BIT_RC4
643
# We called it SEC_OID_PKCS12_PBE_WITH_SHA1_AND_128_BIT_RC4
645
OID 1.2.840.113549.1.12.5.1.2
646
TAG pbeWithSha1And40BitRC4
647
EXPL "PKCS #12 OIDs PBE with SHA-1 and 40-bit RC4 (XXX)"
648
CKM CKM_NETSCAPE_PBE_SHA1_40_BIT_RC4
649
# We called it SEC_OID_PKCS12_PBE_WITH_SHA1_AND_40_BIT_RC4
651
OID 1.2.840.113549.1.12.5.1.3
652
TAG pbeWithSha1AndTripleDES-CBC
653
EXPL "PKCS #12 OIDs PBE with SHA-1 and Triple DES-CBC (XXX)"
654
CKM CKM_NETSCAPE_PBE_SHA1_TRIPLE_DES_CBC
655
# We called it SEC_OID_PKCS12_PBE_WITH_SHA1_AND_TRIPLE_DES_CBC
657
OID 1.2.840.113549.1.12.5.1.4
658
TAG pbeWithSha1And128BitRC2-CBC
659
EXPL "PKCS #12 OIDs PBE with SHA-1 and 128-bit RC2-CBC (XXX)"
660
CKM CKM_NETSCAPE_PBE_SHA1_128_BIT_RC2_CBC
661
# We called it SEC_OID_PKCS12_PBE_WITH_SHA1_AND_128_BIT_RC2_CBC
663
OID 1.2.840.113549.1.12.5.1.5
664
TAG pbeWithSha1And40BitRC2-CBC
665
EXPL "PKCS #12 OIDs PBE with SHA-1 and 40-bit RC2-CBC (XXX)"
666
CKM CKM_NETSCAPE_PBE_SHA1_40_BIT_RC2_CBC
667
# We called it SEC_OID_PKCS12_PBE_WITH_SHA1_AND_40_BIT_RC2_CBC
669
OID 1.2.840.113549.1.12.5.2
670
TAG pkcs-12EnvelopingIds
671
EXPL "PKCS #12 OIDs Enveloping IDs (XXX)"
672
# We called it SEC_OID_PKCS12_ENVELOPING_IDS
674
OID 1.2.840.113549.1.12.5.2.1
675
TAG rsaEncryptionWith128BitRC4
676
EXPL "PKCS #12 OIDs Enveloping RSA Encryption with 128-bit RC4"
677
# We called it SEC_OID_PKCS12_RSA_ENCRYPTION_WITH_128_BIT_RC4
679
OID 1.2.840.113549.1.12.5.2.2
680
TAG rsaEncryptionWith40BitRC4
681
EXPL "PKCS #12 OIDs Enveloping RSA Encryption with 40-bit RC4"
682
# We called it SEC_OID_PKCS12_RSA_ENCRYPTION_WITH_40_BIT_RC4
684
OID 1.2.840.113549.1.12.5.2.3
685
TAG rsaEncryptionWithTripleDES
686
EXPL "PKCS #12 OIDs Enveloping RSA Encryption with Triple DES"
687
# We called it SEC_OID_PKCS12_RSA_ENCRYPTION_WITH_TRIPLE_DES
689
OID 1.2.840.113549.1.12.5.3
690
TAG pkcs-12SignatureIds
691
EXPL "PKCS #12 OIDs Signature IDs (XXX)"
692
# We called it SEC_OID_PKCS12_SIGNATURE_IDS
694
OID 1.2.840.113549.1.12.5.3.1
695
TAG rsaSignatureWithSHA1Digest
696
EXPL "PKCS #12 OIDs RSA Signature with SHA-1 Digest"
697
# We called it SEC_OID_PKCS12_RSA_SIGNATURE_WITH_SHA1_DIGEST
699
OID 1.2.840.113549.1.12.10
701
EXPL "PKCS #12 Version 1"
703
OID 1.2.840.113549.1.12.10.1
705
EXPL "PKCS #12 Bag IDs"
707
OID 1.2.840.113549.1.12.10.1.1
709
EXPL "PKCS #12 Key Bag"
710
NAME NSS_OID_PKCS12_KEY_BAG
711
# We called it SEC_OID_PKCS12_V1_KEY_BAG_ID
713
OID 1.2.840.113549.1.12.10.1.2
714
TAG pkcs-8ShroudedKeyBag
715
EXPL "PKCS #12 PKCS #8-shrouded Key Bag"
716
NAME NSS_OID_PKCS12_PKCS8_SHROUDED_KEY_BAG
717
# We called it SEC_OID_PKCS12_V1_PKCS8_SHROUDED_KEY_BAG_ID
719
OID 1.2.840.113549.1.12.10.1.3
721
EXPL "PKCS #12 Certificate Bag"
722
NAME NSS_OID_PKCS12_CERT_BAG
723
# We called it SEC_OID_PKCS12_V1_CERT_BAG_ID
725
OID 1.2.840.113549.1.12.10.1.4
727
EXPL "PKCS #12 CRL Bag"
728
NAME NSS_OID_PKCS12_CRL_BAG
729
# We called it SEC_OID_PKCS12_V1_CRL_BAG_ID
731
OID 1.2.840.113549.1.12.10.1.5
733
EXPL "PKCS #12 Secret Bag"
734
NAME NSS_OID_PKCS12_SECRET_BAG
735
# We called it SEC_OID_PKCS12_V1_SECRET_BAG_ID
737
OID 1.2.840.113549.1.12.10.1.6
739
EXPL "PKCS #12 Safe Contents Bag"
740
NAME NSS_OID_PKCS12_SAFE_CONTENTS_BAG
741
# We called it SEC_OID_PKCS12_V1_SAFE_CONTENTS_BAG_ID
745
EXPL "RSA digest algorithm"
747
OID 1.2.840.113549.2.2
753
OID 1.2.840.113549.2.4
759
OID 1.2.840.113549.2.5
767
EXPL "RSA cipher algorithm"
769
OID 1.2.840.113549.3.2
775
OID 1.2.840.113549.3.4
781
OID 1.2.840.113549.3.7
784
NAME NSS_OID_DES_EDE3_CBC
787
OID 1.2.840.113549.3.9
790
NAME NSS_OID_RC5_CBC_PAD
798
TAG columbia-university
799
EXPL "Columbia University"
814
TAG identified-organization
815
EXPL "ISO identified organizations"
819
EXPL "United States Department of Defense"
822
TAG internet # See RFC 1065
827
EXPL "Internet: Directory"
831
EXPL "Internet: Management"
835
EXPL "Internet: Experimental"
839
EXPL "Internet: Private"
843
EXPL "Internet: Security"
849
# id-pkix OBJECT IDENTIFIER ::=
850
# { iso(1) identified-organization(3) dod(6) internet(1)
851
# security(5) mechanisms(5) pkix(7) }
854
EXPL "Public Key Infrastructure"
858
# PKIX1Explicit88 {iso(1) identified-organization(3) dod(6) internet(1)
859
# security(5) mechanisms(5) pkix(7) id-mod(0) id-pkix1-explicit-88(1)}
860
OID 1.3.6.1.5.5.7.0.1
862
EXPL "RFC 2459 Explicitly Tagged Module, 1988 Syntax"
866
# PKIX1Implicit88 {iso(1) identified-organization(3) dod(6) internet(1)
867
# security(5) mechanisms(5) pkix(7) id-mod(0) id-pkix1-implicit-88(2)}
868
OID 1.3.6.1.5.5.7.0.2
870
EXPL "RFC 2459 Implicitly Tagged Module, 1988 Syntax"
874
# PKIX1Explicit93 {iso(1) identified-organization(3) dod(6) internet(1)
875
# security(5) mechanisms(5) pkix(7) id-mod(0) id-pkix1-explicit-93(3)}
876
OID 1.3.6.1.5.5.7.0.3
878
EXPL "RFC 2459 Explicitly Tagged Module, 1993 Syntax"
882
# id-pe OBJECT IDENTIFIER ::= { id-pkix 1 }
883
# -- arc for private certificate extensions
886
EXPL "PKIX Private Certificate Extensions"
890
# id-pe-authorityInfoAccess OBJECT IDENTIFIER ::= { id-pe 1 }
891
OID 1.3.6.1.5.5.7.1.1
892
TAG id-pe-authorityInfoAccess
893
EXPL "Certificate Authority Information Access"
894
NAME NSS_OID_X509_AUTH_INFO_ACCESS
895
CERT_EXTENSION SUPPORTED
899
# id-qt OBJECT IDENTIFIER ::= { id-pkix 2 }
900
# -- arc for policy qualifier types
903
EXPL "PKIX Policy Qualifier Types"
907
# id-qt-cps OBJECT IDENTIFIER ::= { id-qt 1 }
908
# -- OID for CPS qualifier
909
OID 1.3.6.1.5.5.7.2.1
911
EXPL "PKIX CPS Pointer Qualifier"
912
NAME NSS_OID_PKIX_CPS_POINTER_QUALIFIER
916
# id-qt-unotice OBJECT IDENTIFIER ::= { id-qt 2 }
917
# -- OID for user notice qualifier
918
OID 1.3.6.1.5.5.7.2.2
920
EXPL "PKIX User Notice Qualifier"
921
NAME NSS_OID_PKIX_USER_NOTICE_QUALIFIER
925
# id-kp OBJECT IDENTIFIER ::= { id-pkix 3 }
926
# -- arc for extended key purpose OIDS
929
EXPL "PKIX Key Purpose"
933
# id-kp-serverAuth OBJECT IDENTIFIER ::= { id-kp 1 }
934
OID 1.3.6.1.5.5.7.3.1
936
EXPL "TLS Web Server Authentication Certificate"
937
NAME NSS_OID_EXT_KEY_USAGE_SERVER_AUTH
941
# id-kp-clientAuth OBJECT IDENTIFIER ::= { id-kp 2 }
942
OID 1.3.6.1.5.5.7.3.2
944
EXPL "TLS Web Client Authentication Certificate"
945
NAME NSS_OID_EXT_KEY_USAGE_CLIENT_AUTH
949
# id-kp-codeSigning OBJECT IDENTIFIER ::= { id-kp 3 }
950
OID 1.3.6.1.5.5.7.3.3
951
TAG id-kp-codeSigning
952
EXPL "Code Signing Certificate"
953
NAME NSS_OID_EXT_KEY_USAGE_CODE_SIGN
957
# id-kp-emailProtection OBJECT IDENTIFIER ::= { id-kp 4 }
958
OID 1.3.6.1.5.5.7.3.4
959
TAG id-kp-emailProtection
960
EXPL "E-Mail Protection Certificate"
961
NAME NSS_OID_EXT_KEY_USAGE_EMAIL_PROTECTION
965
# id-kp-ipsecEndSystem OBJECT IDENTIFIER ::= { id-kp 5 }
966
OID 1.3.6.1.5.5.7.3.5
967
TAG id-kp-ipsecEndSystem
968
EXPL "IPSEC End System Certificate"
969
NAME NSS_OID_EXT_KEY_USAGE_IPSEC_END_SYSTEM
973
# id-kp-ipsecTunnel OBJECT IDENTIFIER ::= { id-kp 6 }
974
OID 1.3.6.1.5.5.7.3.6
975
TAG id-kp-ipsecTunnel
976
EXPL "IPSEC Tunnel Certificate"
977
NAME NSS_OID_EXT_KEY_USAGE_IPSEC_TUNNEL
981
# id-kp-ipsecUser OBJECT IDENTIFIER ::= { id-kp 7 }
982
OID 1.3.6.1.5.5.7.3.7
984
EXPL "IPSEC User Certificate"
985
NAME NSS_OID_EXT_KEY_USAGE_IPSEC_USER
989
# id-kp-timeStamping OBJECT IDENTIFIER ::= { id-kp 8 }
990
OID 1.3.6.1.5.5.7.3.8
991
TAG id-kp-timeStamping
992
EXPL "Time Stamping Certificate"
993
NAME NSS_OID_EXT_KEY_USAGE_TIME_STAMP
995
OID 1.3.6.1.5.5.7.3.9
997
EXPL "OCSP Responder Certificate"
998
NAME NSS_OID_OCSP_RESPONDER
1003
OID 1.3.6.1.5.5.7.7.5
1006
OID 1.3.6.1.5.5.7.7.5.1
1008
EXPL "CRMF Registration Control"
1010
OID 1.3.6.1.5.5.7.7.5.1.1
1012
EXPL "CRMF Registration Control, Registration Token"
1013
NAME NSS_OID_PKIX_REGCTRL_REGTOKEN
1015
OID 1.3.6.1.5.5.7.7.5.1.2
1017
EXPL "CRMF Registration Control, Registration Authenticator"
1018
NAME NSS_OID_PKIX_REGCTRL_AUTHENTICATOR
1020
OID 1.3.6.1.5.5.7.7.5.1.3
1022
EXPL "CRMF Registration Control, PKI Publication Info"
1023
NAME NSS_OID_PKIX_REGCTRL_PKIPUBINFO
1025
OID 1.3.6.1.5.5.7.7.5.1.4
1026
TAG pki-arch-options
1027
EXPL "CRMF Registration Control, PKI Archive Options"
1028
NAME NSS_OID_PKIX_REGCTRL_PKI_ARCH_OPTIONS
1030
OID 1.3.6.1.5.5.7.7.5.1.5
1032
EXPL "CRMF Registration Control, Old Certificate ID"
1033
NAME NSS_OID_PKIX_REGCTRL_OLD_CERT_ID
1035
OID 1.3.6.1.5.5.7.7.5.1.6
1036
TAG protocol-encryption-key
1037
EXPL "CRMF Registration Control, Protocol Encryption Key"
1038
NAME NSS_OID_PKIX_REGCTRL_PROTOCOL_ENC_KEY
1040
OID 1.3.6.1.5.5.7.7.5.2
1042
EXPL "CRMF Registration Info"
1044
OID 1.3.6.1.5.5.7.7.5.2.1
1046
EXPL "CRMF Registration Info, UTF8 Pairs"
1047
NAME NSS_OID_PKIX_REGINFO_UTF8_PAIRS
1049
OID 1.3.6.1.5.5.7.7.5.2.2
1051
EXPL "CRMF Registration Info, Certificate Request"
1052
NAME NSS_OID_PKIX_REGINFO_CERT_REQUEST
1056
# id-ad OBJECT IDENTIFIER ::= { id-pkix 48 }
1057
# -- arc for access descriptors
1058
OID 1.3.6.1.5.5.7.48
1060
EXPL "PKIX Access Descriptors"
1064
# id-ad-ocsp OBJECT IDENTIFIER ::= { id-ad 1 }
1065
OID 1.3.6.1.5.5.7.48.1
1067
EXPL "PKIX Online Certificate Status Protocol"
1068
NAME NSS_OID_OID_PKIX_OCSP
1070
OID 1.3.6.1.5.5.7.48.1.1
1072
EXPL "OCSP Basic Response"
1073
NAME NSS_OID_PKIX_OCSP_BASIC_RESPONSE
1075
OID 1.3.6.1.5.5.7.48.1.2
1077
EXPL "OCSP Nonce Extension"
1078
NAME NSS_OID_PKIX_OCSP_NONCE
1080
OID 1.3.6.1.5.5.7.48.1.3
1082
EXPL "OCSP Response Types Extension"
1083
NAME NSS_OID_PKIX_OCSP_RESPONSE
1085
OID 1.3.6.1.5.5.7.48.1.4
1087
EXPL "OCSP CRL Reference Extension"
1088
NAME NSS_OID_PKIX_OCSP_CRL
1090
OID 1.3.6.1.5.5.7.48.1.5
1092
EXPL "OCSP No Check Extension"
1093
NAME NSS_OID_X509_OCSP_NO_CHECK # X509_... ?
1095
OID 1.3.6.1.5.5.7.48.1.6
1097
EXPL "OCSP Archive Cutoff Extension"
1098
NAME NSS_OID_PKIX_OCSP_ARCHIVE_CUTOFF
1100
OID 1.3.6.1.5.5.7.48.1.7
1102
EXPL "OCSP Service Locator Extension"
1103
NAME NSS_OID_PKIX_OCSP_SERVICE_LOCATOR
1107
# id-ad-caIssuers OBJECT IDENTIFIER ::= { id-ad 2 }
1108
OID 1.3.6.1.5.5.7.48.2
1110
EXPL "Certificate Authority Issuers"
1114
EXPL "Internet: SNMPv2"
1118
EXPL "Internet: mail"
1122
EXPL "Internet: mail MIME mhs"
1126
EXPL "European Computers Manufacturing Association"
1130
EXPL "Open Systems Implementors Workshop"
1134
EXPL "Open Systems Implementors Workshop Security Special Interest Group"
1137
TAG oIWSECSIGAlgorithmObjectIdentifiers
1138
EXPL "OIW SECSIG Algorithm OIDs"
1142
EXPL "OIW SECSIG Algorithm"
1147
NAME NSS_OID_DES_ECB
1153
NAME NSS_OID_DES_CBC
1159
NAME NSS_OID_DES_OFB
1165
NAME NSS_OID_DES_CFB
1171
NAME NSS_OID_DES_MAC
1175
TAG isoSHAWithRSASignature
1176
EXPL "ISO SHA with RSA Signature"
1177
NAME NSS_OID_ISO_SHA_WITH_RSA_SIGNATURE
1183
NAME NSS_OID_DES_EDE
1193
TAG bogusDSASignatureWithSHA1Digest
1194
EXPL "Forgezza DSA Signature with SHA-1 Digest"
1195
NAME NSS_OID_BOGUS_DSA_SIGNATURE_WITH_SHA1_DIGEST
1199
TAG authentication-mechanism
1200
EXPL "OIW SECSIG Authentication Mechanisms"
1203
TAG security-attribute
1204
EXPL "OIW SECSIG Security Attributes"
1207
TAG document-definition
1208
EXPL "OIW SECSIG Document Definitions used in security"
1211
TAG directory-services-sig
1212
EXPL "OIW directory services sig"
1216
EXPL "European Workshop on Open Systems"
1220
EXPL "Open Software Foundation"
1228
EXPL "NATO identified organisation"
1236
EXPL "Society of Motion Picture and Television Engineers"
1240
EXPL "Societe Internationale de Telecommunications Aeronautiques"
1244
EXPL "Internet Assigned Numbers Authority"
1252
EXPL "Joint ISO/ITU-T assignment"
1256
EXPL "Joint ISO/ITU-T Presentation"
1260
EXPL "Abstract Syntax Notation One"
1264
EXPL "Association Control"
1268
EXPL "Reliable Transfer"
1272
EXPL "Remote Operations"
1280
EXPL "X.500 modules"
1283
TAG service-environment
1284
EXPL "X.500 service environment"
1287
TAG application-context
1288
EXPL "X.500 application context"
1292
# id-at OBJECT IDENTIFIER ::= {joint-iso-ccitt(2) ds(5) 4}
1295
EXPL "X.520 attribute types"
1299
# id-at-commonName AttributeType ::= {id-at 3}
1301
TAG id-at-commonName
1302
EXPL "X.520 Common Name"
1303
NAME NSS_OID_X520_COMMON_NAME
1308
# id-at-surname AttributeType ::= {id-at 4}
1311
EXPL "X.520 Surname"
1312
NAME NSS_OID_X520_SURNAME
1317
# id-at-countryName AttributeType ::= {id-at 6}
1319
TAG id-at-countryName
1320
EXPL "X.520 Country Name"
1321
NAME NSS_OID_X520_COUNTRY_NAME
1326
# id-at-localityName AttributeType ::= {id-at 7}
1328
TAG id-at-localityName
1329
EXPL "X.520 Locality Name"
1330
NAME NSS_OID_X520_LOCALITY_NAME
1335
# id-at-stateOrProvinceName AttributeType ::= {id-at 8}
1337
TAG id-at-stateOrProvinceName
1338
EXPL "X.520 State or Province Name"
1339
NAME NSS_OID_X520_STATE_OR_PROVINCE_NAME
1344
# id-at-organizationName AttributeType ::= {id-at 10}
1346
TAG id-at-organizationName
1347
EXPL "X.520 Organization Name"
1348
NAME NSS_OID_X520_ORGANIZATION_NAME
1353
# id-at-organizationalUnitName AttributeType ::= {id-at 11}
1355
TAG id-at-organizationalUnitName
1356
EXPL "X.520 Organizational Unit Name"
1357
NAME NSS_OID_X520_ORGANIZATIONAL_UNIT_NAME
1362
# id-at-title AttributeType ::= {id-at 12}
1366
NAME NSS_OID_X520_TITLE
1371
# id-at-name AttributeType ::= {id-at 41}
1375
NAME NSS_OID_X520_NAME
1380
# id-at-givenName AttributeType ::= {id-at 42}
1383
EXPL "X.520 Given Name"
1384
NAME NSS_OID_X520_GIVEN_NAME
1389
# id-at-initials AttributeType ::= {id-at 43}
1392
EXPL "X.520 Initials"
1393
NAME NSS_OID_X520_INITIALS
1398
# id-at-generationQualifier AttributeType ::= {id-at 44}
1400
TAG id-at-generationQualifier
1401
EXPL "X.520 Generation Qualifier"
1402
NAME NSS_OID_X520_GENERATION_QUALIFIER
1403
ATTR "generationQualifier"
1407
# id-at-dnQualifier AttributeType ::= {id-at 46}
1409
TAG id-at-dnQualifier
1410
EXPL "X.520 DN Qualifier"
1411
NAME NSS_OID_X520_DN_QUALIFIER
1415
TAG attribute-syntax
1416
EXPL "X.500 attribute syntaxes"
1420
EXPL "X.500 standard object classes"
1424
EXPL "X.500 attribute sets"
1428
EXPL "X.500-defined algorithms"
1432
EXPL "X.500-defined encryption algorithms"
1436
EXPL "RSA Encryption Algorithm"
1437
NAME NSS_OID_X500_RSA_ENCRYPTION
1442
EXPL "X.500 abstract syntaxes"
1445
TAG operational-attribute
1446
EXPL "DSA Operational Attributes"
1450
EXPL "Matching Rule"
1453
TAG knowledge-matching-rule
1454
EXPL "X.500 knowledge Matching Rules"
1458
EXPL "X.500 name forms"
1466
EXPL "X.500 subentry"
1469
TAG operational-attribute-type
1470
EXPL "X.500 operational attribute type"
1473
TAG operational-binding
1474
EXPL "X.500 operational binding"
1477
TAG schema-object-class
1478
EXPL "X.500 schema Object class"
1481
TAG schema-operational-attribute
1482
EXPL "X.500 schema operational attributes"
1485
TAG administrative-role
1486
EXPL "X.500 administrative roles"
1489
TAG access-control-attribute
1490
EXPL "X.500 access control attribute"
1494
EXPL "X.500 ros object"
1498
EXPL "X.500 contract"
1502
EXPL "X.500 package"
1505
TAG access-control-schema
1506
EXPL "X.500 access control schema"
1510
# id-ce OBJECT IDENTIFIER ::= {joint-iso-ccitt(2) ds(5) 29}
1513
EXPL "X.500 Certificate Extension"
1516
TAG subject-directory-attributes
1517
EXPL "Certificate Subject Directory Attributes"
1518
NAME NSS_OID_X509_SUBJECT_DIRECTORY_ATTR
1519
CERT_EXTENSION UNSUPPORTED
1523
# id-ce-subjectDirectoryAttributes OBJECT IDENTIFIER ::= { id-ce 9 }
1525
TAG id-ce-subjectDirectoryAttributes
1526
EXPL "Certificate Subject Directory Attributes"
1527
NAME NSS_OID_X509_SUBJECT_DIRECTORY_ATTRIBUTES
1528
CERT_EXTENSION UNSUPPORTED
1532
# id-ce-subjectKeyIdentifier OBJECT IDENTIFIER ::= { id-ce 14 }
1534
TAG id-ce-subjectKeyIdentifier
1535
EXPL "Certificate Subject Key ID"
1536
NAME NSS_OID_X509_SUBJECT_KEY_ID
1537
CERT_EXTENSION SUPPORTED
1541
# id-ce-keyUsage OBJECT IDENTIFIER ::= { id-ce 15 }
1544
EXPL "Certificate Key Usage"
1545
NAME NSS_OID_X509_KEY_USAGE
1546
CERT_EXTENSION SUPPORTED
1547
# We called it PKCS12_KEY_USAGE
1551
# id-ce-privateKeyUsagePeriod OBJECT IDENTIFIER ::= { id-ce 16 }
1553
TAG id-ce-privateKeyUsagePeriod
1554
EXPL "Certificate Private Key Usage Period"
1555
NAME NSS_OID_X509_PRIVATE_KEY_USAGE_PERIOD
1556
CERT_EXTENSION UNSUPPORTED
1560
# id-ce-subjectAltName OBJECT IDENTIFIER ::= { id-ce 17 }
1562
TAG id-ce-subjectAltName
1563
EXPL "Certificate Subject Alternate Name"
1564
NAME NSS_OID_X509_SUBJECT_ALT_NAME
1565
CERT_EXTENSION SUPPORTED
1569
# id-ce-issuerAltName OBJECT IDENTIFIER ::= { id-ce 18 }
1571
TAG id-ce-issuerAltName
1572
EXPL "Certificate Issuer Alternate Name"
1573
NAME NSS_OID_X509_ISSUER_ALT_NAME
1574
CERT_EXTENSION UNSUPPORTED
1578
# id-ce-basicConstraints OBJECT IDENTIFIER ::= { id-ce 19 }
1580
TAG id-ce-basicConstraints
1581
EXPL "Certificate Basic Constraints"
1582
NAME NSS_OID_X509_BASIC_CONSTRAINTS
1583
CERT_EXTENSION SUPPORTED
1587
# id-ce-cRLNumber OBJECT IDENTIFIER ::= { id-ce 20 }
1591
NAME NSS_OID_X509_CRL_NUMBER
1592
CERT_EXTENSION SUPPORTED
1596
# id-ce-cRLReasons OBJECT IDENTIFIER ::= { id-ce 21 }
1598
TAG id-ce-cRLReasons
1599
EXPL "CRL Reason Code"
1600
NAME NSS_OID_X509_REASON_CODE
1601
CERT_EXTENSION SUPPORTED
1605
# id-ce-holdInstructionCode OBJECT IDENTIFIER ::= { id-ce 23 }
1607
TAG id-ce-holdInstructionCode
1608
EXPL "Hold Instruction Code"
1609
NAME NSS_OID_X509_HOLD_INSTRUCTION_CODE
1610
CERT_EXTENSION UNSUPPORTED
1614
# id-ce-invalidityDate OBJECT IDENTIFIER ::= { id-ce 24 }
1616
TAG id-ce-invalidityDate
1618
NAME NSS_OID_X509_INVALID_DATE
1619
CERT_EXTENSION SUPPORTED
1623
# id-ce-deltaCRLIndicator OBJECT IDENTIFIER ::= { id-ce 27 }
1625
TAG id-ce-deltaCRLIndicator
1626
EXPL "Delta CRL Indicator"
1627
NAME NSS_OID_X509_DELTA_CRL_INDICATOR
1628
CERT_EXTENSION UNSUPPORTED
1632
# id-ce-issuingDistributionPoint OBJECT IDENTIFIER ::= { id-ce 28 }
1634
TAG id-ce-issuingDistributionPoint
1635
EXPL "Issuing Distribution Point"
1636
NAME NSS_OID_X509_ISSUING_DISTRIBUTION_POINT
1637
CERT_EXTENSION UNSUPPORTED
1641
# id-ce-certificateIssuer OBJECT IDENTIFIER ::= { id-ce 29 }
1643
TAG id-ce-certificateIssuer
1644
EXPL "Certificate Issuer"
1645
NAME NSS_OID_X509_CERTIFICATE_ISSUER
1646
CERT_EXTENSION UNSUPPORTED
1650
# id-ce-nameConstraints OBJECT IDENTIFIER ::= { id-ce 30 }
1652
TAG id-ce-nameConstraints
1653
EXPL "Certificate Name Constraints"
1654
NAME NSS_OID_X509_NAME_CONSTRAINTS
1655
CERT_EXTENSION SUPPORTED
1659
# id-ce-cRLDistributionPoints OBJECT IDENTIFIER ::= {id-ce 31}
1661
TAG id-ce-cRLDistributionPoints
1662
EXPL "CRL Distribution Points"
1663
NAME NSS_OID_X509_CRL_DIST_POINTS
1664
CERT_EXTENSION UNSUPPORTED
1668
# id-ce-certificatePolicies OBJECT IDENTIFIER ::= { id-ce 32 }
1670
TAG id-ce-certificatePolicies
1671
EXPL "Certificate Policies"
1672
NAME NSS_OID_X509_CERTIFICATE_POLICIES
1673
CERT_EXTENSION UNSUPPORTED
1677
# id-ce-policyMappings OBJECT IDENTIFIER ::= { id-ce 33 }
1679
TAG id-ce-policyMappings
1680
EXPL "Certificate Policy Mappings"
1681
NAME NSS_OID_X509_POLICY_MAPPINGS
1682
CERT_EXTENSION UNSUPPORTED
1685
TAG policy-constraints
1686
EXPL "Certificate Policy Constraints (old)"
1687
CERT_EXTENSION UNSUPPORTED
1691
# id-ce-authorityKeyIdentifier OBJECT IDENTIFIER ::= { id-ce 35 }
1693
TAG id-ce-authorityKeyIdentifier
1694
EXPL "Certificate Authority Key Identifier"
1695
NAME NSS_OID_X509_AUTH_KEY_ID
1696
CERT_EXTENSION SUPPORTED
1700
# id-ce-policyConstraints OBJECT IDENTIFIER ::= { id-ce 36 }
1702
TAG id-ce-policyConstraints
1703
EXPL "Certificate Policy Constraints"
1704
NAME NSS_OID_X509_POLICY_CONSTRAINTS
1705
CERT_EXTENSION SUPPORTED
1709
# id-ce-extKeyUsage OBJECT IDENTIFIER ::= {id-ce 37}
1711
TAG id-ce-extKeyUsage
1712
EXPL "Extended Key Usage"
1713
NAME NSS_OID_X509_EXT_KEY_USAGE
1714
CERT_EXTENSION SUPPORTED
1718
EXPL "X.500 Management Object"
1726
EXPL "Committment, Concurrency and Recovery"
1730
EXPL "Office Document Architecture"
1734
EXPL "OSI management"
1738
EXPL "Transaction Processing"
1742
EXPL "Distinguished Object Reference"
1746
EXPL "Referenced Data Transfer"
1750
EXPL "Network Layer Management"
1754
EXPL "Transport Layer Management"
1758
EXPL "Link Layer Management"
1762
EXPL "Country Assignments"
1782
EXPL "United States"
1786
EXPL "United States Company"
1790
EXPL "United States Government (1.101)"
1792
OID 2.16.840.1.101.2
1794
EXPL "United States Department of Defense"
1796
OID 2.16.840.1.101.2.1
1798
EXPL "US DOD Infosec"
1800
OID 2.16.840.1.101.2.1.0
1802
EXPL "US DOD Infosec modules"
1804
OID 2.16.840.1.101.2.1.1
1806
EXPL "US DOD Infosec algorithms (MISSI)"
1808
OID 2.16.840.1.101.2.1.1.2
1810
EXPL "MISSI DSS Algorithm (Old)"
1811
NAME NSS_OID_MISSI_DSS_OLD
1813
# This is labeled as "### mwelch temporary"
1814
# Is it official?? XXX fgmr
1815
OID 2.16.840.1.101.2.1.1.4
1817
EXPL "Skipjack CBC64"
1818
NAME NSS_OID_FORTEZZA_SKIPJACK
1819
CKM CKM_SKIPJACK_CBC64
1821
OID 2.16.840.1.101.2.1.1.10
1823
EXPL "MISSI KEA Algorithm"
1824
NAME NSS_OID_MISSI_KEA
1826
OID 2.16.840.1.101.2.1.1.12
1828
EXPL "MISSI KEA and DSS Algorithm (Old)"
1829
NAME NSS_OID_MISSI_KEA_DSS_OLD
1831
OID 2.16.840.1.101.2.1.1.19
1833
EXPL "MISSI DSS Algorithm"
1834
NAME NSS_OID_MISSI_DSS
1836
OID 2.16.840.1.101.2.1.1.20
1838
EXPL "MISSI KEA and DSS Algorithm"
1839
NAME NSS_OID_MISSI_KEA_DSS
1841
OID 2.16.840.1.101.2.1.1.22
1843
EXPL "MISSI Alternate KEA Algorithm"
1844
NAME NSS_OID_MISSI_ALT_KEY
1846
OID 2.16.840.1.101.2.1.2
1848
EXPL "US DOD Infosec formats"
1850
OID 2.16.840.1.101.2.1.3
1852
EXPL "US DOD Infosec policy"
1854
OID 2.16.840.1.101.2.1.4
1855
TAG id-object-classes
1856
EXPL "US DOD Infosec object classes"
1858
OID 2.16.840.1.101.2.1.5
1860
EXPL "US DOD Infosec attributes"
1862
OID 2.16.840.1.101.2.1.6
1863
TAG id-attribute-syntax
1864
EXPL "US DOD Infosec attribute syntax"
1866
OID 2.16.840.1.113730
1867
# The Netscape OID space
1869
EXPL "Netscape Communications Corp."
1871
OID 2.16.840.1.113730.1
1873
EXPL "Netscape Cert Extensions"
1875
OID 2.16.840.1.113730.1.1
1877
EXPL "Certificate Type"
1878
NAME NSS_OID_NS_CERT_EXT_CERT_TYPE
1879
CERT_EXTENSION SUPPORTED
1881
OID 2.16.840.1.113730.1.2
1883
EXPL "Certificate Extension Base URL"
1884
NAME NSS_OID_NS_CERT_EXT_BASE_URL
1885
CERT_EXTENSION SUPPORTED
1887
OID 2.16.840.1.113730.1.3
1889
EXPL "Certificate Revocation URL"
1890
NAME NSS_OID_NS_CERT_EXT_REVOCATION_URL
1891
CERT_EXTENSION SUPPORTED
1893
OID 2.16.840.1.113730.1.4
1894
TAG ca-revocation-url
1895
EXPL "Certificate Authority Revocation URL"
1896
NAME NSS_OID_NS_CERT_EXT_CA_REVOCATION_URL
1897
CERT_EXTENSION SUPPORTED
1899
OID 2.16.840.1.113730.1.5
1900
TAG ca-crl-download-url
1901
EXPL "Certificate Authority CRL Download URL"
1902
NAME NSS_OID_NS_CERT_EXT_CA_CRL_URL
1903
CERT_EXTENSION UNSUPPORTED
1905
OID 2.16.840.1.113730.1.6
1907
EXPL "Certificate Authority Certificate Download URL"
1908
NAME NSS_OID_NS_CERT_EXT_CA_CERT_URL
1909
CERT_EXTENSION UNSUPPORTED
1911
OID 2.16.840.1.113730.1.7
1913
EXPL "Certificate Renewal URL"
1914
NAME NSS_OID_NS_CERT_EXT_CERT_RENEWAL_URL
1915
CERT_EXTENSION SUPPORTED
1917
OID 2.16.840.1.113730.1.8
1919
EXPL "Certificate Authority Policy URL"
1920
NAME NSS_OID_NS_CERT_EXT_CA_POLICY_URL
1921
CERT_EXTENSION SUPPORTED
1923
OID 2.16.840.1.113730.1.9
1925
EXPL "Certificate Homepage URL"
1926
NAME NSS_OID_NS_CERT_EXT_HOMEPAGE_URL
1927
CERT_EXTENSION UNSUPPORTED
1929
OID 2.16.840.1.113730.1.10
1931
EXPL "Certificate Entity Logo"
1932
NAME NSS_OID_NS_CERT_EXT_ENTITY_LOGO
1933
CERT_EXTENSION UNSUPPORTED
1935
OID 2.16.840.1.113730.1.11
1937
EXPL "Certificate User Picture"
1938
NAME NSS_OID_NS_CERT_EXT_USER_PICTURE
1939
CERT_EXTENSION UNSUPPORTED
1941
OID 2.16.840.1.113730.1.12
1943
EXPL "Certificate SSL Server Name"
1944
NAME NSS_OID_NS_CERT_EXT_SSL_SERVER_NAME
1945
CERT_EXTENSION SUPPORTED
1947
OID 2.16.840.1.113730.1.13
1949
EXPL "Certificate Comment"
1950
NAME NSS_OID_NS_CERT_EXT_COMMENT
1951
CERT_EXTENSION SUPPORTED
1953
OID 2.16.840.1.113730.1.14
1956
NAME NSS_OID_NS_CERT_EXT_THAYES
1957
CERT_EXTENSION SUPPORTED
1959
OID 2.16.840.1.113730.2
1961
EXPL "Netscape Data Types"
1963
OID 2.16.840.1.113730.2.1
1966
NAME NSS_OID_NS_TYPE_GIF
1968
OID 2.16.840.1.113730.2.2
1971
NAME NSS_OID_NS_TYPE_JPEG
1973
OID 2.16.840.1.113730.2.3
1976
NAME NSS_OID_NS_TYPE_URL
1978
OID 2.16.840.1.113730.2.4
1981
NAME NSS_OID_NS_TYPE_HTML
1983
OID 2.16.840.1.113730.2.5
1985
EXPL "Certificate Sequence"
1986
NAME NSS_OID_NS_TYPE_CERT_SEQUENCE
1988
OID 2.16.840.1.113730.3
1989
# The Netscape Directory OID space
1991
EXPL "Netscape Directory"
1993
OID 2.16.840.1.113730.4
1995
EXPL "Netscape Policy Type OIDs"
1997
OID 2.16.840.1.113730.4.1
1999
EXPL "Strong Crypto Export Approved"
2000
NAME NSS_OID_NS_KEY_USAGE_GOVT_APPROVED
2001
CERT_EXTENSION UNSUPPORTED
2003
OID 2.16.840.1.113730.5
2005
EXPL "Netscape Certificate Server"
2007
OID 2.16.840.1.113730.5.1
2009
OID 2.16.840.1.113730.5.1.1
2010
TAG recovery-request
2011
EXPL "Netscape Cert Server Recovery Request"
2012
NAME NSS_OID_NETSCAPE_RECOVERY_REQUEST
2014
OID 2.16.840.1.113730.6
2016
EXPL "Netscape algorithm OIDs"
2018
OID 2.16.840.1.113730.6.1
2020
EXPL "Netscape S/MIME KEA"
2021
NAME NSS_OID_NETSCAPE_SMIME_KEA
2023
OID 2.16.840.1.113730.7
2025
EXPL "Netscape Name Components"
2027
OID 2.16.840.1.113730.7.1
2029
EXPL "Netscape Nickname"
2030
NAME NSS_OID_NETSCAPE_NICKNAME
2032
OID 2.16.840.1.113733
2036
OID 2.16.840.1.113733.1
2038
OID 2.16.840.1.113733.1.7
2040
OID 2.16.840.1.113733.1.7.1
2042
OID 2.16.840.1.113733.1.7.1.1
2043
TAG verisign-user-notices
2044
EXPL "Verisign User Notices"
2045
NAME NSS_OID_VERISIGN_USER_NOTICES
2049
EXPL "US Government (101)"
2053
EXPL "US Government (102)"
2057
EXPL "Netscape Communications Corp. (Old)"
2059
OID 2.16.840.11370.1
2061
EXPL "Netscape Cert Extensions (Old NS)"
2063
OID 2.16.840.11370.1.1
2065
EXPL "Netscape says this cert is ok (Old NS)"
2066
NAME NSS_OID_NS_CERT_EXT_NETSCAPE_OK
2067
CERT_EXTENSION UNSUPPORTED
2069
OID 2.16.840.11370.1.2
2071
EXPL "Certificate Issuer Logo (Old NS)"
2072
NAME NSS_OID_NS_CERT_EXT_ISSUER_LOGO
2073
CERT_EXTENSION UNSUPPORTED
2075
OID 2.16.840.11370.1.3
2077
EXPL "Certificate Subject Logo (Old NS)"
2078
NAME NSS_OID_NS_CERT_EXT_SUBJECT_LOGO
2079
CERT_EXTENSION UNSUPPORTED
2081
OID 2.16.840.11370.2
2083
EXPL "Netscape File Type"
2085
OID 2.16.840.11370.3
2087
EXPL "Netscape Image Type"
2090
TAG registration-procedures
2091
EXPL "Registration procedures"
2094
TAG physical-layer-management
2095
EXPL "Physical layer Management"
2103
EXPL "Generic Upper Layer Security"
2107
EXPL "Transport Layer Security Protocol"
2111
EXPL "Network Layer Security Protocol"
2115
EXPL "International organizations"