Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
gsk_encode_export_certificate() z/OS Cryptographic Services System SSL Programming SC14-7495-00 |
|
Encodes an X.509 certificate into a DER or PKCS #7 data stream.
Format
Parameters
ResultsThe function return value will be 0 if no error is detected. Otherwise,
it will be one of the return codes listed in the gskcms.h include
file. These are some possible errors:
UsageThe gsk_encode_export_certificate() function encodes an X.509 certificate using either the ASN.1 DER encoding for the certificate or the Cryptographic Message Syntax (PKCS #7) encoding for the certificate. This can be either the binary value or the Base64 encoding of the binary value. A Base64 encoded stream will be in the local code page and will include the encoding header and footer lines. The export data stream contains just the requested certificate when the DER format is selected. The export data stream contains the requested certificate and its certification chain when the PKCS #7 format is selected. The certificate chain for the subject certificate is supplied from the pkcs_certificates structure issuer_certificates with the root certificate being the final entry in the array. A partial certification chain will be exported if the complete chain is not supplied in issuer_certificates. |
Copyright IBM Corporation 1990, 2014
|