mirror of
https://github.com/guanzhi/GmSSL.git
synced 2026-06-29 09:13:38 +08:00
update
This commit is contained in:
@@ -127,35 +127,6 @@ secg-ellipticCurve 37 : sect409r1
|
||||
secg-ellipticCurve 38 : sect571k1
|
||||
secg-ellipticCurve 39 : sect571r1
|
||||
|
||||
# SM2
|
||||
secg-ellipticCurve 100 : wapi192v1
|
||||
1 2 156 10197 1 301 : sm2p256v1
|
||||
secg-ellipticCurve 102 : sm2p256v2
|
||||
secg-ellipticCurve 103 : sm2t257v1
|
||||
|
||||
1 2 156 10197 1 501 : SM2DSA-with-SM3
|
||||
|
||||
|
||||
# ECIES
|
||||
!Alias secg_scheme certicom-arc 1
|
||||
secg-scheme 7 : ecies-recommendedParameters
|
||||
secg-scheme 8 : ecies-specifiedParameters
|
||||
secg-scheme 17 0 : x9-63-kdf
|
||||
secg-scheme 17 1 : nist-concatenation-kdf
|
||||
secg-scheme 17 2 : tls-kdf
|
||||
secg-scheme 17 3 : ikev2-kdf
|
||||
secg-scheme 18 : xor-in-ecies
|
||||
secg-scheme 20 0 : aes128-cbc-in-ecies
|
||||
secg-scheme 20 1 : aes192-cbc-in-ecies
|
||||
secg-scheme 20 2 : aes256-cbc-in-ecies
|
||||
secg-scheme 21 0 : aes128-ctr-in-ecies
|
||||
secg-scheme 21 1 : aes192-ctr-in-ecies
|
||||
secg-scheme 21 2 : aes256-ctr-in-ecies
|
||||
secg-scheme 22 : hmac-full-ecies
|
||||
secg-scheme 23 : hmac-half-ecies
|
||||
secg-scheme 24 0 : cmac-aes128-ecies
|
||||
secg-scheme 24 1 : cmac-aes192-ecies
|
||||
|
||||
# WAP/TLS curve OIDs (http://www.wapforum.org/)
|
||||
!Alias wap-wsg-idm-ecid wap-wsg 4
|
||||
wap-wsg-idm-ecid 1 : wap-wsg-idm-ecid-wtls1
|
||||
@@ -195,6 +166,11 @@ pkcs1 3 : RSA-MD4 : md4WithRSAEncryption
|
||||
pkcs1 4 : RSA-MD5 : md5WithRSAEncryption
|
||||
pkcs1 5 : RSA-SHA1 : sha1WithRSAEncryption
|
||||
# According to PKCS #1 version 2.1
|
||||
pkcs1 7 : RSAES-OAEP : rsaesOaep
|
||||
pkcs1 8 : MGF1 : mgf1
|
||||
pkcs1 9 : PSPECIFIED : pSpecified
|
||||
pkcs1 10 : RSASSA-PSS : rsassaPss
|
||||
|
||||
pkcs1 11 : RSA-SHA256 : sha256WithRSAEncryption
|
||||
pkcs1 12 : RSA-SHA384 : sha384WithRSAEncryption
|
||||
pkcs1 13 : RSA-SHA512 : sha512WithRSAEncryption
|
||||
@@ -328,6 +304,7 @@ id-smime-alg 4 : id-smime-alg-RC2wrap
|
||||
id-smime-alg 5 : id-smime-alg-ESDH
|
||||
id-smime-alg 6 : id-smime-alg-CMS3DESwrap
|
||||
id-smime-alg 7 : id-smime-alg-CMSRC2wrap
|
||||
id-smime-alg 9 : id-alg-PWRI-KEK
|
||||
|
||||
# S/MIME Certificate Distribution
|
||||
id-smime-cd 1 : id-smime-cd-ldap
|
||||
@@ -799,6 +776,10 @@ id-ce 55 : targetInformation : X509v3 AC Targeting
|
||||
!Cname no-rev-avail
|
||||
id-ce 56 : noRevAvail : X509v3 No Revocation Available
|
||||
|
||||
# From RFC5280
|
||||
ext-key-usage 0 : anyExtendedKeyUsage : Any Extended Key Usage
|
||||
|
||||
|
||||
!Cname netscape
|
||||
2 16 840 1 113730 : Netscape : Netscape Communications Corp.
|
||||
!Cname netscape-cert-extension
|
||||
@@ -875,6 +856,10 @@ aes 2 : AES-128-CBC : aes-128-cbc
|
||||
aes 3 : AES-128-OFB : aes-128-ofb
|
||||
!Cname aes-128-cfb128
|
||||
aes 4 : AES-128-CFB : aes-128-cfb
|
||||
aes 5 : id-aes128-wrap
|
||||
aes 6 : id-aes128-GCM : aes-128-gcm
|
||||
aes 7 : id-aes128-CCM : aes-128-ccm
|
||||
aes 8 : id-aes128-wrap-pad
|
||||
|
||||
aes 21 : AES-192-ECB : aes-192-ecb
|
||||
aes 22 : AES-192-CBC : aes-192-cbc
|
||||
@@ -882,6 +867,10 @@ aes 22 : AES-192-CBC : aes-192-cbc
|
||||
aes 23 : AES-192-OFB : aes-192-ofb
|
||||
!Cname aes-192-cfb128
|
||||
aes 24 : AES-192-CFB : aes-192-cfb
|
||||
aes 25 : id-aes192-wrap
|
||||
aes 26 : id-aes192-GCM : aes-192-gcm
|
||||
aes 27 : id-aes192-CCM : aes-192-ccm
|
||||
aes 28 : id-aes192-wrap-pad
|
||||
|
||||
aes 41 : AES-256-ECB : aes-256-ecb
|
||||
aes 42 : AES-256-CBC : aes-256-cbc
|
||||
@@ -889,6 +878,10 @@ aes 42 : AES-256-CBC : aes-256-cbc
|
||||
aes 43 : AES-256-OFB : aes-256-ofb
|
||||
!Cname aes-256-cfb128
|
||||
aes 44 : AES-256-CFB : aes-256-cfb
|
||||
aes 45 : id-aes256-wrap
|
||||
aes 46 : id-aes256-GCM : aes-256-gcm
|
||||
aes 47 : id-aes256-CCM : aes-256-ccm
|
||||
aes 48 : id-aes256-wrap-pad
|
||||
|
||||
# There are no OIDs for these modes...
|
||||
|
||||
@@ -898,15 +891,16 @@ aes 44 : AES-256-CFB : aes-256-cfb
|
||||
: AES-128-CFB8 : aes-128-cfb8
|
||||
: AES-192-CFB8 : aes-192-cfb8
|
||||
: AES-256-CFB8 : aes-256-cfb8
|
||||
: AES-128-CTR : aes-128-ctr
|
||||
: AES-192-CTR : aes-192-ctr
|
||||
: AES-256-CTR : aes-256-ctr
|
||||
: AES-128-XTS : aes-128-xts
|
||||
: AES-256-XTS : aes-256-xts
|
||||
: DES-CFB1 : des-cfb1
|
||||
: DES-CFB8 : des-cfb8
|
||||
: DES-EDE3-CFB1 : des-ede3-cfb1
|
||||
: DES-EDE3-CFB8 : des-ede3-cfb8
|
||||
|
||||
aes 5 : id-aes128-wrap
|
||||
aes 25 : id-aes192-wrap
|
||||
aes 45 : id-aes256-wrap
|
||||
|
||||
# OIDs for SHA224, SHA256, SHA385 and SHA512, according to x9.84.
|
||||
!Alias nist_hashalgs nistAlgorithms 2
|
||||
nist_hashalgs 1 : SHA256 : sha256
|
||||
@@ -1240,6 +1234,9 @@ cryptocom 1 8 1 : id-GostR3410-2001-ParamSet-cc : GOST R 3410-2001 Parameter Se
|
||||
1 2 392 200011 61 1 1 1 2 : CAMELLIA-128-CBC : camellia-128-cbc
|
||||
1 2 392 200011 61 1 1 1 3 : CAMELLIA-192-CBC : camellia-192-cbc
|
||||
1 2 392 200011 61 1 1 1 4 : CAMELLIA-256-CBC : camellia-256-cbc
|
||||
1 2 392 200011 61 1 1 3 2 : id-camellia128-wrap
|
||||
1 2 392 200011 61 1 1 3 3 : id-camellia192-wrap
|
||||
1 2 392 200011 61 1 1 3 4 : id-camellia256-wrap
|
||||
|
||||
# Definitions for Camellia cipher - ECB, CFB, OFB MODE
|
||||
|
||||
@@ -1286,3 +1283,90 @@ kisa 1 6 : SEED-OFB : seed-ofb
|
||||
# There is no OID that just denotes "HMAC" oddly enough...
|
||||
|
||||
: HMAC : hmac
|
||||
# Nor CMAC either
|
||||
: CMAC : cmac
|
||||
|
||||
# Synthetic composite ciphersuites
|
||||
: RC4-HMAC-MD5 : rc4-hmac-md5
|
||||
: AES-128-CBC-HMAC-SHA1 : aes-128-cbc-hmac-sha1
|
||||
: AES-192-CBC-HMAC-SHA1 : aes-192-cbc-hmac-sha1
|
||||
: AES-256-CBC-HMAC-SHA1 : aes-256-cbc-hmac-sha1
|
||||
: AES-128-CBC-HMAC-SHA256 : aes-128-cbc-hmac-sha256
|
||||
: AES-192-CBC-HMAC-SHA256 : aes-192-cbc-hmac-sha256
|
||||
: AES-256-CBC-HMAC-SHA256 : aes-256-cbc-hmac-sha256
|
||||
|
||||
ISO-US 10046 2 1 : dhpublicnumber : X9.42 DH
|
||||
|
||||
# RFC 5639 curve OIDs (see http://www.ietf.org/rfc/rfc5639.txt)
|
||||
# versionOne OBJECT IDENTIFIER ::= {
|
||||
# iso(1) identifified-organization(3) teletrust(36) algorithm(3)
|
||||
# signature-algorithm(3) ecSign(2) ecStdCurvesAndGeneration(8)
|
||||
# ellipticCurve(1) 1 }
|
||||
1 3 36 3 3 2 8 1 1 1 : brainpoolP160r1
|
||||
1 3 36 3 3 2 8 1 1 2 : brainpoolP160t1
|
||||
1 3 36 3 3 2 8 1 1 3 : brainpoolP192r1
|
||||
1 3 36 3 3 2 8 1 1 4 : brainpoolP192t1
|
||||
1 3 36 3 3 2 8 1 1 5 : brainpoolP224r1
|
||||
1 3 36 3 3 2 8 1 1 6 : brainpoolP224t1
|
||||
1 3 36 3 3 2 8 1 1 7 : brainpoolP256r1
|
||||
1 3 36 3 3 2 8 1 1 8 : brainpoolP256t1
|
||||
1 3 36 3 3 2 8 1 1 9 : brainpoolP320r1
|
||||
1 3 36 3 3 2 8 1 1 10 : brainpoolP320t1
|
||||
1 3 36 3 3 2 8 1 1 11 : brainpoolP384r1
|
||||
1 3 36 3 3 2 8 1 1 12 : brainpoolP384t1
|
||||
1 3 36 3 3 2 8 1 1 13 : brainpoolP512r1
|
||||
1 3 36 3 3 2 8 1 1 14 : brainpoolP512t1
|
||||
|
||||
# ECDH schemes from RFC5753
|
||||
!Alias x9-63-scheme 1 3 133 16 840 63 0
|
||||
!Alias secg-scheme certicom-arc 1
|
||||
|
||||
x9-63-scheme 2 : dhSinglePass-stdDH-sha1kdf-scheme
|
||||
secg-scheme 11 0 : dhSinglePass-stdDH-sha224kdf-scheme
|
||||
secg-scheme 11 1 : dhSinglePass-stdDH-sha256kdf-scheme
|
||||
secg-scheme 11 2 : dhSinglePass-stdDH-sha384kdf-scheme
|
||||
secg-scheme 11 3 : dhSinglePass-stdDH-sha512kdf-scheme
|
||||
|
||||
x9-63-scheme 3 : dhSinglePass-cofactorDH-sha1kdf-scheme
|
||||
secg-scheme 14 0 : dhSinglePass-cofactorDH-sha224kdf-scheme
|
||||
secg-scheme 14 1 : dhSinglePass-cofactorDH-sha256kdf-scheme
|
||||
secg-scheme 14 2 : dhSinglePass-cofactorDH-sha384kdf-scheme
|
||||
secg-scheme 14 3 : dhSinglePass-cofactorDH-sha512kdf-scheme
|
||||
# NIDs for use with lookup tables.
|
||||
: dh-std-kdf
|
||||
: dh-cofactor-kdf
|
||||
|
||||
# RFC 6962 Extension OIDs (see http://www.ietf.org/rfc/rfc6962.txt)
|
||||
1 3 6 1 4 1 11129 2 4 2 : ct_precert_scts : CT Precertificate SCTs
|
||||
1 3 6 1 4 1 11129 2 4 3 : ct_precert_poison : CT Precertificate Poison
|
||||
1 3 6 1 4 1 11129 2 4 4 : ct_precert_signer : CT Precertificate Signer
|
||||
1 3 6 1 4 1 11129 2 4 5 : ct_cert_scts : CT Certificate SCTs
|
||||
|
||||
# CABForum EV SSL Certificate Guidelines
|
||||
# (see https://cabforum.org/extended-validation/)
|
||||
# OIDs for Subject Jurisdiction of Incorporation or Registration
|
||||
1 3 6 1 4 1 311 60 2 1 1 : jurisdictionL : jurisdictionLocalityName
|
||||
1 3 6 1 4 1 311 60 2 1 2 : jurisdictionST : jurisdictionStateOrProvinceName
|
||||
1 3 6 1 4 1 311 60 2 1 3 : jurisdictionC : jurisdictionCountryName
|
||||
|
||||
# SM: China National Cryptography Standards
|
||||
member-body 156 : ISO-CN : ISO CN Member Body
|
||||
ISO-CN 10197 : oscca
|
||||
oscca 1 : sm
|
||||
sm 301 : sm2
|
||||
sm2 1 : sm2sign
|
||||
sm2 2 : sm2keyagreement
|
||||
sm2 3 : sm2encrypt
|
||||
sm2 4 : sm2p256v1
|
||||
sm 401 : SM3 : sm3
|
||||
sm 401 2 : HMAC-SM3 : hmac-sm3
|
||||
sm 501 : SM2Sign-with-SM3 : sm2sign-with-sm3
|
||||
sm 502 : SM2Sign-with-SHA1 : sm2sign-with-sha1
|
||||
sm 503 : SM2Sign-with-SHA256 : sm2sign-with-sha256
|
||||
|
||||
sm 104 1 : SMS4-ECB : sms4-ecb
|
||||
sm 104 2 : SMS4-CBC : sms4-cbc
|
||||
!Cname sms4-cfb128
|
||||
sm 104 3 : SMS4-CFB : sms4-cfb
|
||||
!Cname sms4-ofb128
|
||||
sm 104 4 : SMS4-OFB : sms4-ofb
|
||||
|
||||
Reference in New Issue
Block a user