* roottypes.cs: Rename from tree.cs.
[mono.git] / mcs / class / Mono.Security / Mono.Security.X509.Extensions / BasicConstraintsExtension.cs
index 5034dd0a70064661c6120a820cec14d166004f9f..335fe92c65454cc964184d02f4f28d58084b7bbc 100644 (file)
@@ -2,12 +2,33 @@
 // BasicConstraintsExtension.cs: Handles X.509 BasicConstrains extensions.
 //
 // Author:
-//     Sebastien Pouliot (spouliot@motus.com)
+//     Sebastien Pouliot  <sebastien@ximian.com>
 //
 // (C) 2003 Motus Technologies Inc. (http://www.motus.com)
+// Copyright (C) 2004-2005 Novell, Inc (http://www.novell.com)
+//
+// Permission is hereby granted, free of charge, to any person obtaining
+// a copy of this software and associated documentation files (the
+// "Software"), to deal in the Software without restriction, including
+// without limitation the rights to use, copy, modify, merge, publish,
+// distribute, sublicense, and/or sell copies of the Software, and to
+// permit persons to whom the Software is furnished to do so, subject to
+// the following conditions:
+// 
+// The above copyright notice and this permission notice shall be
+// included in all copies or substantial portions of the Software.
+// 
+// THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
+// EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
+// MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
+// NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
+// LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
+// OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
+// WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
 //
 
 using System;
+using System.Globalization;
 using System.Text;
 
 using Mono.Security;
@@ -26,7 +47,14 @@ namespace Mono.Security.X509.Extensions {
         *      pathLenConstraint       INTEGER (0..MAX) OPTIONAL 
         * }
         */
-       public class BasicConstraintsExtension : X509Extension {
+#if INSIDE_CORLIB
+       internal
+#else
+       public 
+#endif
+       class BasicConstraintsExtension : X509Extension {
+
+               public const int NoPathLengthConstraint = -1;
 
                private bool cA;
                private int pathLenConstraint;
@@ -34,6 +62,7 @@ namespace Mono.Security.X509.Extensions {
                public BasicConstraintsExtension () : base () 
                {
                        extnOid = "2.5.29.19";
+                       pathLenConstraint = NoPathLengthConstraint;
                }
 
                public BasicConstraintsExtension (ASN1 asn1) : base (asn1) {}
@@ -44,7 +73,7 @@ namespace Mono.Security.X509.Extensions {
                {
                        // default values
                        cA = false;
-                       pathLenConstraint = 0; // no constraint
+                       pathLenConstraint = NoPathLengthConstraint;
 
                        ASN1 sequence = new ASN1 (extnValue.Value);
                        if (sequence.Tag != 0x30)
@@ -61,13 +90,15 @@ namespace Mono.Security.X509.Extensions {
 
                protected override void Encode () 
                {
-                       if (extnValue == null) {
-                               extnValue = new ASN1 (0x30);
-                               if (cA)
-                                       extnValue.Add (new ASN1 (0x01, new byte[] { 0xFF }));
-                               if (pathLenConstraint > 0)
-                                       extnValue.Add (ASN1Convert.FromInt32 (pathLenConstraint));
-                       }
+                       ASN1 seq = new ASN1 (0x30);
+                       if (cA)
+                               seq.Add (new ASN1 (0x01, new byte[] { 0xFF }));
+                       // CAs MUST NOT include the pathLenConstraint field unless the cA boolean is asserted
+                       if (cA && (pathLenConstraint >= 0))
+                               seq.Add (ASN1Convert.FromInt32 (pathLenConstraint));
+
+                       extnValue = new ASN1 (0x04);
+                       extnValue.Add (seq);
                }
 
                public bool CertificateAuthority {
@@ -81,7 +112,13 @@ namespace Mono.Security.X509.Extensions {
 
                public int PathLenConstraint {
                        get { return pathLenConstraint; }
-                       set { pathLenConstraint = value; }
+                       set {
+                               if (value < NoPathLengthConstraint) {
+                                       string msg = Locale.GetText ("PathLenConstraint must be positive or -1 for none ({0}).", value);
+                                       throw new ArgumentOutOfRangeException (msg);
+                               }
+                               pathLenConstraint = value;
+                       }
                }
 
                public override string ToString () 
@@ -91,10 +128,10 @@ namespace Mono.Security.X509.Extensions {
                        sb.Append ((cA) ? "CA" : "End Entity");
                        sb.Append (Environment.NewLine);
                        sb.Append ("Path Length Constraint=");
-                       if (pathLenConstraint == 0)
+                       if (pathLenConstraint == NoPathLengthConstraint)
                                sb.Append ("None");
                        else
-                               sb.Append (pathLenConstraint.ToString ());
+                               sb.Append (pathLenConstraint.ToString (CultureInfo.InvariantCulture));
                        sb.Append (Environment.NewLine);
                        return sb.ToString ();
                }