]> git.saurik.com Git - apple/security.git/blame - SecurityTests/clxutils/dumpasn1.cfg
Security-57740.31.2.tar.gz
[apple/security.git] / SecurityTests / clxutils / dumpasn1.cfg
CommitLineData
d8f41ccd
A
1# dumpasn1 Object Identifier configuration file, available from
2# http://www.cs.auckland.ac.nz/~pgut001/dumpasn1.cfg. This is read by
3# dumpasn1.c and is used to display information on Object Identifiers found in
4# ASN.1 objects. This is merely a list of things which you might conceivably
5# find in use somewhere, and should in no way be taken as a guide to which OIDs
6# to use - many of these will never been seen in the wild, or should be shot on
7# sight if encountered.
8#
9# The format of this file is as follows:
10#
11# - All blank lines and lines beginning with a '#' are ignored.
12# - OIDs are described by a set of attributes, of which at least the 'OID' and
13# 'Description' must be present. Optional attributes are a 'Comment' and a
14# 'Warning' (to indicate that dumpasn1 will display a warning if this OID is
15# encountered).
16# - Attributes are listed one per line. The first attribute should be an 'OID'
17# attribute since this is used to denote the start of a new OID description.
18# The other attributes may be given in any order.
19#
20# See the rest of this file for examples of what an OID description should look
21# like.
22
23# Some unknown X.500 attributes spec from the UK
24
25OID = 06 09 09 92 26 89 93 F2 2C 01 03
26Comment = Some oddball X.500 attribute collection
27Description = rfc822Mailbox (0 9 2342 19200300 1 3)
28
29# RFC 2247, How to Kludge an FQDN as a DN (or words to that effect)
30
31OID = 06 0A 09 92 26 89 93 F2 2C 64 01 01
32Comment = Men are from Mars, this OID is from Pluto
33Description = domainComponent (0 9 2342 19200300 100 1 25)
34
35# Certificates Australia
36
37OID = 06 0A 2A 24 A4 97 A3 53 01 64 01 01
38Comment = Certificates Australia CA
39Description = Certificates Australia policyIdentifier (1 2 36 75878867 1 100 1 1)
40
41# Signet
42
43OID = 06 09 2A 24 A0 F2 A0 7D 01 01 02
44Comment = Signet CA
45Description = Signet personal (1 2 36 68980861 1 1 2)
46
47OID = 06 09 2A 24 A0 F2 A0 7D 01 01 03
48Comment = Signet CA
49Description = Signet business (1 2 36 68980861 1 1 3)
50
51OID = 06 09 2A 24 A0 F2 A0 7D 01 01 04
52Comment = Signet CA
53Description = Signet legal (1 2 36 68980861 1 1 4)
54
55OID = 06 09 2A 24 A0 F2 A0 7D 01 01 0A
56Comment = Signet CA
57Description = Signet pilot (1 2 36 68980861 1 1 10)
58
59OID = 06 09 2A 24 A0 F2 A0 7D 01 01 0B
60Comment = Signet CA
61Description = Signet intraNet (1 2 36 68980861 1 1 11)
62
63OID = 06 09 2A 24 A0 F2 A0 7D 01 01 14
64Comment = Signet CA
65Description = Signet securityPolicy (1 2 36 68980861 1 1 20)
66
67# Mitsubishi
68
69OID = 06 0B 2A 83 08 8C 1A 4B 3D 01 01 01
70Comment = Mitsubishi security algorithm
71Description = symmetric-encryption-algorithm (1 2 392 200011 61 1 1 1)
72
73OID = 06 0C 2A 83 08 8C 9A 4B 3D 01 01 01 01
74Comment = Mitsubishi security algorithm
75Description = misty1-cbc (1 2 392 200011 61 1 1 1 1)
76
77# SEIS
78
79OID = 06 05 2A 85 70 22 01
80Comment = SEIS Project
81Description = seis-cp (1 2 752 34 1)
82
83OID = 06 06 2A 85 70 22 01 01
84Comment = SEIS Project certificate policies
85Description = SEIS high-assurnace certificatePolicy (1 2 752 34 1 1)
86
87OID = 06 06 2A 85 70 22 01 02
88Comment = SEIS Project certificate policies
89Description = SEIS GAK certificatePolicy (1 2 752 34 1 2)
90
91OID = 06 05 2A 85 70 22 02
92Comment = SEIS Project
93Description = SEIS pe (1 2 752 34 2)
94
95OID = 06 05 2A 85 70 22 03
96Comment = SEIS Project
97Description = SEIS at (1 2 752 34 3)
98
99OID = 06 06 2A 85 70 22 03 01
100Comment = SEIS Project attribute
101Description = SEIS at-personalIdentifier (1 2 752 34 3 1)
102
103# ANSI X9.57
104
105OID = 06 06 2A 86 48 CE 38 01
106Comment = ANSI X9.57
107Description = module (1 2 840 10040 1)
108
109OID = 06 07 2A 86 48 CE 38 01 01
110Comment = ANSI X9.57 module
111Description = x9f1-cert-mgmt (1 2 840 10040 1 1)
112
113OID = 06 06 2A 86 48 CE 38 02
114Comment = ANSI X9.57
115Description = holdinstruction (1 2 840 10040 2)
116
117OID = 06 07 2A 86 48 CE 38 02 01
118Comment = ANSI X9.57 hold instruction
119Description = holdinstruction-none (1 2 840 10040 2 1)
120
121OID = 06 07 2A 86 48 CE 38 02 02
122Comment = ANSI X9.57 hold instruction
123Description = callissuer (1 2 840 10040 2 2)
124
125OID = 06 07 2A 86 48 CE 38 02 03
126Comment = ANSI X9.57 hold instruction
127Description = reject (1 2 840 10040 2 3)
128
129OID = 06 07 2A 86 48 CE 38 02 04
130Comment = ANSI X9.57 hold instruction
131Description = pickupToken (1 2 840 10040 2 4)
132
133OID = 06 06 2A 86 48 CE 38 03
134Comment = ANSI X9.57
135Description = attribute (1 2 840 10040 3)
136
137OID = 06 06 2A 86 48 CE 38 03 01
138Comment = ANSI X9.57 attribute
139Description = countersignature (1 2 840 10040 3 1)
140
141OID = 06 06 2A 86 48 CE 38 03 02
142Comment = ANSI X9.57 attribute
143Description = attribute-cert (1 2 840 10040 3 2)
144
145OID = 06 06 2A 86 48 CE 38 04
146Comment = ANSI X9.57
147Description = algorithm (1 2 840 10040 4)
148
149# this is specified in sm_cms
150OID = 06 07 2A 86 48 CE 38 04 01
151Comment = ANSI X9.57 algorithm
152Description = dsa (1 2 840 10040 4 1)
153
154OID = 06 07 2A 86 48 CE 38 04 02
155Comment = ANSI X9.57 algorithm
156Description = dsa-match (1 2 840 10040 4 2)
157
158OID = 06 07 2A 86 48 CE 38 04 03
159Comment = ANSI X9.57 algorithm
160Description = dsaWithSha1 (1 2 840 10040 4 3)
161
162# ANSI X9.62
163
164OID = 06 06 2A 86 48 CE 3D 01
165Comment = ANSI X9.62. This OID may also be assigned as ecdsa-with-SHA1
166Description = fieldType (1 2 840 10045 1)
167
168OID = 06 07 2A 86 48 CE 3D 01 01
169Comment = ANSI X9.62 field type
170Description = prime-field (1 2 840 10045 1 1)
171
172OID = 06 07 2A 86 48 CE 3D 01 02
173Comment = ANSI X9.62 field type
174Description = characteristic-two-field (1 2 840 10045 1 2)
175
176OID = 06 09 2A 86 48 CE 3D 01 02 03
177Comment = ANSI X9.62 field type
178Description = characteristic-two-basis (1 2 840 10045 1 2 3)
179
180OID = 06 0A 2A 86 48 CE 3D 01 02 03 01
181Comment = ANSI X9.62 field basis
182Description = qnBasis (1 2 840 10045 1 2 3 1)
183
184OID = 06 0A 2A 86 48 CE 3D 01 02 03 02
185Comment = ANSI X9.62 field basis
186Description = tpBasis (1 2 840 10045 1 2 3 2)
187
188OID = 06 0A 2A 86 48 CE 3D 01 02 03 03
189Comment = ANSI X9.62 field basis
190Description = ppBasis (1 2 840 10045 1 2 3 3)
191
192OID = 06 07 2A 86 48 CE 3D 01 02
193Comment = ANSI X9.62
194Description = public-key-type (1 2 840 10045 1 2)
195
196# this seems bogus - (1 2 840 10045 2 1) is used now
197OID = 06 08 2A 86 48 CE 3D 01 02 01
198Comment = ANSI X9.62 public key type
199Description = ecPublicKey (1 2 840 10045 1 2 1)
200
201# The definition for the following OID is somewhat confused, and is given as
202# keyType, publicKeyType, and public-key-type, all within 4 lines of text.
203# ecPublicKey is defined using the ID publicKeyType, so this is what's used
204# here.
205OID = 06 06 2A 86 48 CE 3D 02
206Comment = ANSI X9.62
207Description = publicKeyType (1 2 840 10045 2)
208
209OID = 06 07 2A 86 48 CE 3D 02 01
210Comment = ANSI X9.62 public key type
211Description = ecPublicKey (1 2 840 10045 2 1)
212
213# ANSI X9.42
214
215OID = 06 07 2A 86 48 CE 3E 02
216Comment = ANSI X9.42
217Description = number-type (1 2 840 10046 2)
218
219OID = 06 07 2A 86 48 CE 3E 02 01
220Comment = ANSI X9.42 number-type
221Description = dhPublicNumber (1 2 840 10046 2 1)
222
223# Nortel Secure Networks/Entrust
224
225OID = 06 07 2A 86 48 86 F6 7D 07
226Description = nsn (1 2 840 113533 7)
227
228OID = 06 08 2A 86 48 86 F6 7D 07 41
229Description = nsn-ce (1 2 840 113533 7 65)
230
231OID = 06 09 2A 86 48 86 F6 7D 07 41 00
232Comment = Nortel Secure Networks ce (1 2 840 113533 7 65)
233Description = entrustVersInfo (1 2 840 113533 7 65 0)
234
235OID = 06 08 2A 86 48 86 F6 7D 07 42
236Description = nsn-alg (1 2 840 113533 7 66)
237
238OID = 06 09 2A 86 48 86 F6 7D 07 42 03
239Comment = Nortel Secure Networks alg (1 2 840 113533 7 66)
240Description = cast3CBC (1 2 840 113533 7 66 3)
241
242OID = 06 09 2A 86 48 86 F6 7D 07 42 0A
243Comment = Nortel Secure Networks alg (1 2 840 113533 7 66)
244Description = cast5CBC (1 2 840 113533 7 66 10)
245
246OID = 06 09 2A 86 48 86 F6 7D 07 42 0B
247Comment = Nortel Secure Networks alg (1 2 840 113533 7 66)
248Description = cast5MAC (1 2 840 113533 7 66 11)
249
250OID = 06 09 2A 86 48 86 F6 7D 07 42 0C
251Comment = Nortel Secure Networks alg (1 2 840 113533 7 66)
252Description = pbeWithMD5AndCAST5-CBC (1 2 840 113533 7 66 12)
253
254OID = 06 09 2A 86 48 86 F6 7D 07 42 0D
255Comment = Nortel Secure Networks alg (1 2 840 113533 7 66)
256Description = passwordBasedMac (1 2 840 113533 7 66 13)
257
258OID = 06 08 2A 86 48 86 F6 7D 07 43
259Description = nsn-oc (1 2 840 113533 7 67)
260
261OID = 06 09 2A 86 48 86 F6 7D 07 43 0C
262Comment = Nortel Secure Networks oc (1 2 840 113533 7 67)
263Description = entrustUser (1 2 840 113533 7 67 0)
264
265OID = 06 08 2A 86 48 86 F6 7D 07 44
266Description = nsn-at (1 2 840 113533 7 68)
267
268OID = 06 09 2A 86 48 86 F6 7D 07 44 00
269Comment = Nortel Secure Networks at (1 2 840 113533 7 68)
270Description = entrustCAInfo (1 2 840 113533 7 68 0)
271
272OID = 06 09 2A 86 48 86 F6 7D 07 44 0A
273Comment = Nortel Secure Networks at (1 2 840 113533 7 68)
274Description = attributeCertificate (1 2 840 113533 7 68 10)
275
276# PKCS #1
277
278OID = 06 08 2A 86 48 86 F7 0D 01 01
279Description = pkcs-1 (1 2 840 113549 1 1)
280
281OID = 06 09 2A 86 48 86 F7 0D 01 01 01
282Comment = PKCS #1
283Description = rsaEncryption (1 2 840 113549 1 1 1)
284
285OID = 06 09 2A 86 48 86 F7 0D 01 01 02
286Comment = PKCS #1
287Description = md2withRSAEncryption (1 2 840 113549 1 1 2)
288
289OID = 06 09 2A 86 48 86 F7 0D 01 01 03
290Comment = PKCS #1
291Description = md4withRSAEncryption (1 2 840 113549 1 1 3)
292
293OID = 06 09 2A 86 48 86 F7 0D 01 01 04
294Comment = PKCS #1
295Description = md5withRSAEncryption (1 2 840 113549 1 1 4)
296
297OID = 06 09 2A 86 48 86 F7 0D 01 01 05
298Comment = PKCS #1
299Description = sha1withRSAEncryption (1 2 840 113549 1 1 5)
300
301# There is some confusion over the identity of the following OID. The OAEP
302# one is more recent, but independant vendors have already used the RIPEMD
303# one, however it's likely that SET will be a bigger hammer so we report it
304# as that.
305OID = 06 09 2A 86 48 86 F7 0D 01 01 06
306Comment = PKCS #1. This OID may also be assigned as ripemd160WithRSAEncryption
307Description = rsaOAEPEncryptionSET (1 2 840 113549 1 1 6)
308# ripemd160WithRSAEncryption (1 2 840 113549 1 1 6)
309
310# PKCS #3
311
312OID = 06 08 2A 86 48 86 F7 0D 01 03
313Description = pkcs-3 (1 2 840 113549 1 3)
314
315OID = 06 09 2A 86 48 86 F7 0D 01 03 01
316Comment = PKCS #3
317Description = dhKeyAgreement (1 2 840 113549 1 3 1)
318
319# PKCS #5
320
321OID = 06 09 2A 86 48 86 F7 0D 01 05
322Description = pkcs-5 (1 2 840 113549 1 5)
323
324OID = 06 09 2A 86 48 86 F7 0D 01 05 01
325Comment = PKCS #5
326Description = pbeWithMD2AndDES-CBC (1 2 840 113549 1 5 1)
327
328OID = 06 09 2A 86 48 86 F7 0D 01 05 03
329Comment = PKCS #5
330Description = pbeWithMD5AndDES-CBC (1 2 840 113549 1 5 3)
331
332OID = 06 09 2A 86 48 86 F7 0D 01 05 04
333Comment = PKCS #5
334Description = pbeWithMD2AndRC2-CBC (1 2 840 113549 1 5 4)
335
336OID = 06 09 2A 86 48 86 F7 0D 01 05 06
337Comment = PKCS #5
338Description = pbeWithMD5AndRC2-CBC (1 2 840 113549 1 5 6)
339
340OID = 06 09 2A 86 48 86 F7 0D 01 05 09
341Comment = PKCS #5, used in BSAFE only
342Description = pbeWithMD5AndXOR (1 2 840 113549 1 5 9)
343Warning
344
345OID = 06 09 2A 86 48 86 F7 0D 01 05 0A
346Comment = PKCS #5
347Description = pbeWithSHA1AndDES-CBC (1 2 840 113549 1 5 10)
348
349OID = 06 09 2A 86 48 86 F7 0D 01 05 0B
350Comment = PKCS #5
351Description = pbeWithSHA1AndRC2-CBC (1 2 840 113549 1 5 11)
352
353OID = 06 09 2A 86 48 86 F7 0D 01 05 0C
354Comment = PKCS #5
355Description = id-PBKDF2 (1 2 840 113549 1 5 12)
356
357OID = 06 09 2A 86 48 86 F7 0D 01 05 0D
358Comment = PKCS #5
359Description = id-PBES2 (1 2 840 113549 1 5 13)
360
361OID = 06 09 2A 86 48 86 F7 0D 01 05 0E
362Comment = PKCS #5
363Description = id-PBMAC1 (1 2 840 113549 1 5 14)
364
365# PKCS #7
366
367OID = 06 09 2A 86 48 86 F7 0D 01 07
368Description = pkcs-7 (1 2 840 113549 1 7)
369
370OID = 06 09 2A 86 48 86 F7 0D 01 07 01
371Comment = PKCS #7
372Description = data (1 2 840 113549 1 7 1)
373
374OID = 06 09 2A 86 48 86 F7 0D 01 07 02
375Comment = PKCS #7
376Description = signedData (1 2 840 113549 1 7 2)
377
378OID = 06 09 2A 86 48 86 F7 0D 01 07 03
379Comment = PKCS #7
380Description = envelopedData (1 2 840 113549 1 7 3)
381
382OID = 06 09 2A 86 48 86 F7 0D 01 07 04
383Comment = PKCS #7
384Description = signedAndEnvelopedData (1 2 840 113549 1 7 4)
385
386OID = 06 09 2A 86 48 86 F7 0D 01 07 05
387Comment = PKCS #7
388Description = digestedData (1 2 840 113549 1 7 5)
389
390OID = 06 09 2A 86 48 86 F7 0D 01 07 06
391Comment = PKCS #7
392Description = encryptedData (1 2 840 113549 1 7 6)
393
394OID = 06 09 2A 86 48 86 F7 0D 01 07 07
395Comment = PKCS #7 experimental
396Description = dataWithAttributes (1 2 840 113549 1 7 7)
397Warning
398
399OID = 06 09 2A 86 48 86 F7 0D 01 07 08
400Comment = PKCS #7 experimental
401Description = encryptedPrivateKeyInfo (1 2 840 113549 1 7 8)
402Warning
403
404# PKCS #9
405
406OID = 06 09 2A 86 48 86 F7 0D 01 09
407Description = pkcs-9 (1 2 840 113549 1 9)
408
409OID = 06 09 2A 86 48 86 F7 0D 01 09 01
410Comment = PKCS #9 (1 2 840 113549 1 9). Deprecated, use an altName extension instead
411Description = emailAddress (1 2 840 113549 1 9 1)
412
413OID = 06 09 2A 86 48 86 F7 0D 01 09 02
414Comment = PKCS #9 (1 2 840 113549 1 9)
415Description = unstructuredName (1 2 840 113549 1 9 2)
416
417OID = 06 09 2A 86 48 86 F7 0D 01 09 03
418Comment = PKCS #9 (1 2 840 113549 1 9)
419Description = contentType (1 2 840 113549 1 9 3)
420
421OID = 06 09 2A 86 48 86 F7 0D 01 09 04
422Comment = PKCS #9 (1 2 840 113549 1 9)
423Description = messageDigest (1 2 840 113549 1 9 4)
424
425OID = 06 09 2A 86 48 86 F7 0D 01 09 05
426Comment = PKCS #9 (1 2 840 113549 1 9)
427Description = signingTime (1 2 840 113549 1 9 5)
428
429OID = 06 09 2A 86 48 86 F7 0D 01 09 06
430Comment = PKCS #9 (1 2 840 113549 1 9)
431Description = countersignature (1 2 840 113549 1 9 6)
432
433OID = 06 09 2A 86 48 86 F7 0D 01 09 07
434Comment = PKCS #9 (1 2 840 113549 1 9)
435Description = challengePassword (1 2 840 113549 1 9 7)
436
437OID = 06 09 2A 86 48 86 F7 0D 01 09 08
438Comment = PKCS #9 (1 2 840 113549 1 9)
439Description = unstructuredAddress (1 2 840 113549 1 9 8)
440
441OID = 06 09 2A 86 48 86 F7 0D 01 09 09
442Comment = PKCS #9 (1 2 840 113549 1 9)
443Description = extendedCertificateAttributes (1 2 840 113549 1 9 9)
444
445OID = 06 09 2A 86 48 86 F7 0D 01 09 0A
446Comment = PKCS #9 (1 2 840 113549 1 9) experimental
447Description = issuerAndSerialNumber (1 2 840 113549 1 9 10)
448Warning
449
450OID = 06 09 2A 86 48 86 F7 0D 01 09 0B
451Comment = PKCS #9 (1 2 840 113549 1 9) experimental
452Description = passwordCheck (1 2 840 113549 1 9 11)
453Warning
454
455OID = 06 09 2A 86 48 86 F7 0D 01 09 0C
456Comment = PKCS #9 (1 2 840 113549 1 9) experimental
457Description = publicKey (1 2 840 113549 1 9 12)
458Warning
459
460OID = 06 09 2A 86 48 86 F7 0D 01 09 0D
461Comment = PKCS #9 (1 2 840 113549 1 9) experimental
462Description = signingDescription (1 2 840 113549 1 9 13)
463Warning
464
465OID = 06 09 2A 86 48 86 F7 0D 01 09 0E
466Comment = PKCS #9 (1 2 840 113549 1 9) experimental
467Description = extensionReq (1 2 840 113549 1 9 14)
468
469# PKCS #9 for use with S/MIME
470
471OID = 06 09 2A 86 48 86 F7 0D 01 09 0F
472Comment = PKCS #9 (1 2 840 113549 1 9). This OID was formerly assigned as symmetricCapabilities, then reassigned as SMIMECapabilities, then renamed to the current name
473Description = sMIMECapabilities (1 2 840 113549 1 9 15)
474
475OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 01
476Comment = sMIMECapabilities (1 2 840 113549 1 9 15)
477Description = preferSignedData (1 2 840 113549 1 9 15 1)
478
479OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 02
480Comment = sMIMECapabilities (1 2 840 113549 1 9 15)
481Description = canNotDecryptAny (1 2 840 113549 1 9 15 2)
482
483OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 03
484Comment = sMIMECapabilities (1 2 840 113549 1 9 15). Deprecated, use (1 2 840 113549 1 9 16 2 1) instead
485Description = receiptRequest (1 2 840 113549 1 9 15 3)
486Warning
487
488OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 04
489Comment = sMIMECapabilities (1 2 840 113549 1 9 15). Deprecated, use (1 2 840 113549 1 9 16 1 1) instead
490Description = receipt (1 2 840 113549 1 9 15 4)
491Warning
492
493OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 05
494Comment = sMIMECapabilities (1 2 840 113549 1 9 15). Deprecated, use (1 2 840 113549 1 9 16 2 4) instead
495Description = contentHints (1 2 840 113549 1 9 15 5)
496Warning
497
498OID = 06 0A 2A 86 48 86 F7 0D 01 09 0F 06
499Comment = sMIMECapabilities (1 2 840 113549 1 9 15). Deprecated, use (1 2 840 113549 1 9 16 2 3) instead
500Description = mlExpansionHistory (1 2 840 113549 1 9 15 6)
501Warning
502
503OID = 06 09 2A 86 48 86 F7 0D 01 09 10
504Comment = PKCS #9 (1 2 840 113549 1 9)
505Description = id-sMIME (1 2 840 113549 1 9 16)
506
507OID = 06 0A 2A 86 48 86 F7 0D 01 09 10 00
508Comment = id-sMIME (1 2 840 113549 1 9 16)
509Description = id-mod (1 2 840 113549 1 9 16 0)
510
511OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 00 01
512Comment = S/MIME Modules (1 2 840 113549 1 9 16 0)
513Description = id-mod-cms (1 2 840 113549 1 9 16 0 1)
514
515OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 00 02
516Comment = S/MIME Modules (1 2 840 113549 1 9 16 0)
517Description = id-mod-ess (1 2 840 113549 1 9 16 0 2)
518
519OID = 06 0A 2A 86 48 86 F7 0D 01 09 10 01
520Comment = id-sMIME (1 2 840 113549 1 9 16)
521Description = id-ct (1 2 840 113549 1 9 16 1)
522
523OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 01 01
524Comment = S/MIME Content Types (1 2 840 113549 1 9 16 1)
525Description = id-ct-receipt (1 2 840 113549 1 9 16 1 1)
526
527OID = 06 0A 2A 86 48 86 F7 0D 01 09 10 02
528Comment = id-sMIME (1 2 840 113549 1 9 16)
529Description = id-aa (1 2 840 113549 1 9 16 2)
530
531OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 01
532Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
533Description = id-aa-receiptRequest (1 2 840 113549 1 9 16 2 1)
534
535OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 02
536Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
537Description = id-aa-securityLabel (1 2 840 113549 1 9 16 2 2)
538
539OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 03
540Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
541Description = id-aa-mlExpandHistory (1 2 840 113549 1 9 16 2 3)
542
543OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 04
544Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
545Description = id-aa-contentHint (1 2 840 113549 1 9 16 2 4)
546
547OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 05
548Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
549Description = id-aa-msgSigDigest (1 2 840 113549 1 9 16 2 5)
550
551OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 07
552Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
553Description = id-aa-contentIdentifier (1 2 840 113549 1 9 16 2 7)
554
555OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 08
556Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
557Description = id-aa-macValue (1 2 840 113549 1 9 16 2 8)
558
559OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 09
560Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
561Description = id-aa-equivalentLabels (1 2 840 113549 1 9 16 2 9)
562
563OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 0A
564Comment = S/MIME Authenticated Attributes (1 2 840 113549 1 9 16 2)
565Description = id-aa-contentReference (1 2 840 113549 1 9 16 2 10)
566
567# PKCS #9 for use with PKCS #12
568
569OID = 06 09 2A 86 48 86 F7 0D 01 09 14
570Comment = PKCS #9 (1 2 840 113549 1 9)
571Description = friendlyName (for PKCS #12) (1 2 840 113549 1 9 20)
572
573OID = 06 09 2A 86 48 86 F7 0D 01 09 15
574Comment = PKCS #9 (1 2 840 113549 1 9)
575Description = localKeyID (for PKCS #12) (1 2 840 113549 1 9 21)
576
577OID = 06 09 2A 86 48 86 F7 0D 01 09 16
578Comment = PKCS #9 (1 2 840 113549 1 9)
579Description = certTypes (for PKCS #12) (1 2 840 113549 1 9 22)
580
581OID = 06 0A 2A 86 48 86 F7 0D 01 09 16 01
582Comment = PKCS #9 (1 2 840 113549 1 9)
583Description = x509Certificate (for PKCS #12) (1 2 840 113549 1 9 22 1)
584
585OID = 06 0A 2A 86 48 86 F7 0D 01 09 16 02
586Comment = PKCS #9 (1 2 840 113549 1 9)
587Description = sdsiCertificate (for PKCS #12) (1 2 840 113549 1 9 22 2)
588
589OID = 06 09 2A 86 48 86 F7 0D 01 09 17
590Comment = PKCS #9 (1 2 840 113549 1 9)
591Description = crlTypes (for PKCS #12) (1 2 840 113549 1 9 23)
592
593OID = 06 0A 2A 86 48 86 F7 0D 01 09 17 01
594Comment = PKCS #9 (1 2 840 113549 1 9)
595Description = x509Crl (for PKCS #12) (1 2 840 113549 1 9 23 1)
596
597# PKCS #12. Note that current PKCS #12 implementations tend to be strange and
598# peculiar, with implementors misusing OIDs or basing their work on earlier PFX
599# drafts or defining their own odd OIDs. In addition the PFX/PKCS #12 spec
600# itself is full of errors and inconsistencies, and a number of OIDs have been
601# redefined in different drafts (often multiple times), which doesn't make the
602# implementors job any easier.
603
604OID = 06 08 2A 86 48 86 F7 0D 01 0C
605Description = pkcs-12 (1 2 840 113549 1 12)
606
607OID = 06 09 2A 86 48 86 F7 0D 01 0C 01
608Comment = This OID was formerly assigned as PKCS #12 modeID
609Description = pkcs-12-PbeIds (1 2 840 113549 1 12 1)
610
611OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 01
612Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 1). This OID was formerly assigned as pkcs-12-OfflineTransportMode
613Description = pbeWithSHAAnd128BitRC4 (1 2 840 113549 1 12 1 1)
614
615OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 02
616Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 2). This OID was formerly assigned as pkcs-12-OnlineTransportMode
617Description = pbeWithSHAAnd40BitRC4 (1 2 840 113549 1 12 1 2)
618
619OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 03
620Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 3)
621Description = pbeWithSHAAnd3-KeyTripleDES-CBC (1 2 840 113549 1 12 1 3)
622
623OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 04
624Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 3)
625Description = pbeWithSHAAnd2-KeyTripleDES-CBC (1 2 840 113549 1 12 1 4)
626
627OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 05
628Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 3)
629Description = pbeWithSHAAnd128BitRC2-CBC (1 2 840 113549 1 12 1 5)
630
631OID = 06 0A 2A 86 48 86 F7 0D 01 0C 01 06
632Comment = PKCS #12 PbeIds (1 2 840 113549 1 12 3)
633Description = pbeWithSHAAnd40BitRC2-CBC (1 2 840 113549 1 12 1 6)
634
635OID = 06 09 2A 86 48 86 F7 0D 01 0C 02
636Comment = Deprecated
637Description = pkcs-12-ESPVKID (1 2 840 113549 1 12 2)
638Warning
639
640OID = 06 0A 2A 86 48 86 F7 0D 01 0C 02 01
641Comment = PKCS #12 ESPVKID (1 2 840 113549 1 12 2). Deprecated, use (1 2 840 113549 1 12 3 5) instead
642Description = pkcs-12-PKCS8KeyShrouding (1 2 840 113549 1 12 2 1)
643Warning
644
645# The following appear to have been redefined yet again at 12 10 in the latest
646# PKCS #12 spec.
647OID = 06 09 2A 86 48 86 F7 0D 01 0C 03
648Description = pkcs-12-BagIds (1 2 840 113549 1 12 3)
649
650OID = 06 0A 2A 86 48 86 F7 0D 01 0C 03 01
651Comment = PKCS #12 BagIds (1 2 840 113549 1 12 3)
652Description = pkcs-12-keyBagId (1 2 840 113549 1 12 3 1)
653
654OID = 06 0A 2A 86 48 86 F7 0D 01 0C 03 02
655Comment = PKCS #12 BagIds (1 2 840 113549 1 12 3)
656Description = pkcs-12-certAndCRLBagId (1 2 840 113549 1 12 3 2)
657
658OID = 06 0A 2A 86 48 86 F7 0D 01 0C 03 03
659Comment = PKCS #12 BagIds (1 2 840 113549 1 12 3)
660Description = pkcs-12-secretBagId (1 2 840 113549 1 12 3 3)
661
662OID = 06 0A 2A 86 48 86 F7 0D 01 0C 03 04
663Comment = PKCS #12 BagIds (1 2 840 113549 1 12 3)
664Description = pkcs-12-safeContentsId (1 2 840 113549 1 12 3 4)
665
666OID = 06 0A 2A 86 48 86 F7 0D 01 0C 03 05
667Comment = PKCS #12 BagIds (1 2 840 113549 1 12 3)
668Description = pkcs-12-pkcs-8ShroudedKeyBagId (1 2 840 113549 1 12 3 5)
669
670OID = 06 09 2A 86 48 86 F7 0D 01 0C 04
671Comment = Deprecated
672Description = pkcs-12-CertBagID (1 2 840 113549 1 12 4)
673Warning
674
675OID = 06 0A 2A 86 48 86 F7 0D 01 0C 04 01
676Comment = PKCS #12 CertBagID (1 2 840 113549 1 12 4). This OID was formerly assigned as pkcs-12-X509CertCRLBag
677Description = pkcs-12-X509CertCRLBagID (1 2 840 113549 1 12 4 1)
678
679OID = 06 0A 2A 86 48 86 F7 0D 01 0C 04 02
680Comment = PKCS #12 CertBagID (1 2 840 113549 1 12 4). This OID was formerly assigned as pkcs-12-SDSICertBag
681Description = pkcs-12-SDSICertBagID (1 2 840 113549 1 12 4 2)
682
683# The following are from PFX. The ... 5 1 values have been reassigned to OIDs
684# with incompatible algorithms at ... 1, the 5 2 values seem to have vanished.
685OID = 06 09 2A 86 48 86 F7 0D 01 0C 05
686Description = pkcs-12-OID (1 2 840 113549 1 12 5)
687Warning
688
689OID = 06 0A 2A 86 48 86 F7 0D 01 0C 05 01
690Comment = PKCS #12 OID (1 2 840 113549 1 12 5). Deprecated, use the partially compatible (1 2 840 113549 1 12 1) OIDs instead
691Description = pkcs-12-PBEID (1 2 840 113549 1 12 5 1)
692Warning
693
694OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 01
695Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use (1 2 840 113549 1 12 1 1) instead
696Description = pkcs-12-PBEWithSha1And128BitRC4 (1 2 840 113549 1 12 5 1 1)
697Warning
698
699OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 02
700Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use (1 2 840 113549 1 12 1 2) instead
701Description = pkcs-12-PBEWithSha1And40BitRC4 (1 2 840 113549 1 12 5 1 2)
702Warning
703
704OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 03
705Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 3) or (1 2 840 113549 1 12 1 4) instead
706Description = pkcs-12-PBEWithSha1AndTripleDESCBC (1 2 840 113549 1 12 5 1 3)
707Warning
708
709OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 04
710Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use (1 2 840 113549 1 12 1 5) instead
711Description = pkcs-12-PBEWithSha1And128BitRC2CBC (1 2 840 113549 1 12 5 1 4)
712Warning
713
714OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 05
715Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use (1 2 840 113549 1 12 1 6) instead
716Description = pkcs-12-PBEWithSha1And40BitRC2CBC (1 2 840 113549 1 12 5 1 5)
717Warning
718
719OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 06
720Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 1) or (1 2 840 113549 1 12 1 2) instead
721Description = pkcs-12-PBEWithSha1AndRC4 (1 2 840 113549 1 12 5 1 6)
722Warning
723
724OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 01 07
725Comment = PKCS #12 OID PBEID (1 2 840 113549 1 12 5 1). Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 5) or (1 2 840 113549 1 12 1 6) instead
726Description = pkcs-12-PBEWithSha1AndRC2CBC (1 2 840 113549 1 12 5 1 7)
727Warning
728
729OID = 06 0A 2A 86 48 86 F7 0D 01 0C 05 02
730Description = pkcs-12-EnvelopingID (1 2 840 113549 1 12 5 2). Deprecated, use the conventional PKCS #1 OIDs instead
731Warning
732
733OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 02 01
734Comment = PKCS #12 OID EnvelopingID (1 2 840 113549 1 12 5 2). Deprecated, use the conventional PKCS #1 OIDs instead
735Description = pkcs-12-RSAEncryptionWith128BitRC4 (1 2 840 113549 1 12 5 2 1)
736Warning
737
738OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 02 02
739Comment = PKCS #12 OID EnvelopingID (1 2 840 113549 1 12 5 2). Deprecated, use the conventional PKCS #1 OIDs instead
740Description = pkcs-12-RSAEncryptionWith40BitRC4 (1 2 840 113549 1 12 5 2 2)
741Warning
742
743OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 02 03
744Comment = PKCS #12 OID EnvelopingID (1 2 840 113549 1 12 5 2). Deprecated, use the conventional PKCS #1 OIDs instead
745Description = pkcs-12-RSAEncryptionWithTripleDES (1 2 840 113549 1 12 5 2 3)
746Warning
747
748OID = 06 0A 2A 86 48 86 F7 0D 01 0C 05 03
749Description = pkcs-12-SignatureID (1 2 840 113549 1 12 5 3). Deprecated, use the conventional PKCS #1 OIDs instead
750Warning
751
752OID = 06 0B 2A 86 48 86 F7 0D 01 0C 05 03 01
753Comment = PKCS #12 OID SignatureID (1 2 840 113549 1 12 5 3). Deprecated, use the conventional PKCS #1 OIDs instead
754Description = pkcs-12-RSASignatureWithSHA1Digest (1 2 840 113549 1 12 5 3 1)
755Warning
756
757# Yet *another* redefinition of the PKCS #12 "bag" ID's, now in a different
758# order than the last redefinition at ... 12 3.
759OID = 06 09 2A 86 48 86 F7 0D 01 0C 0A
760Description = pkcs-12Version1 (1 2 840 113549 1 12 10)
761
762OID = 06 0A 2A 86 48 86 F7 0D 01 0C 0A 01
763Description = pkcs-12BadIds (1 2 840 113549 1 12 10 1)
764
765OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 01
766Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
767Description = pkcs-12-keyBag (1 2 840 113549 1 12 10 1 1)
768
769OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 02
770Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
771Description = pkcs-12-pkcs-8ShroudedKeyBag (1 2 840 113549 1 12 10 1 2)
772
773OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 03
774Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
775Description = pkcs-12-certBag (1 2 840 113549 1 12 10 1 3)
776
777OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 04
778Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
779Description = pkcs-12-crlBag (1 2 840 113549 1 12 10 1 4)
780
781OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 05
782Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
783Description = pkcs-12-secretBag (1 2 840 113549 1 12 10 1 5)
784
785OID = 06 0B 2A 86 48 86 F7 0D 01 0C 0A 01 06
786Comment = PKCS #12 BagIds (1 2 840 113549 1 12 10 1)
787Description = pkcs-12-safeContentsBag (1 2 840 113549 1 12 10 1 6)
788
789# RSADSI digest algorithms
790
791OID = 06 08 2A 86 48 86 F7 0D 02
792Description = digestAlgorithm (1 2 840 113549 2)
793
794OID = 06 08 2A 86 48 86 F7 0D 02 02
795Comment = RSADSI digestAlgorithm (1 2 840 113549 2)
796Description = md2 (1 2 840 113549 2 2)
797
798OID = 06 08 2A 86 48 86 F7 0D 02 04
799Comment = RSADSI digestAlgorithm (1 2 840 113549 2)
800Description = md4 (1 2 840 113549 2 4)
801
802OID = 06 08 2A 86 48 86 F7 0D 02 05
803Comment = RSADSI digestAlgorithm (1 2 840 113549 2)
804Description = md5 (1 2 840 113549 2 5)
805
806# RSADSI encryption algorithms
807
808OID = 06 08 2A 86 48 86 F7 0D 03
809Description = encryptionAlgorithm (1 2 840 113549 3)
810
811OID = 06 08 2A 86 48 86 F7 0D 03 02
812Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
813Description = rc2CBC (1 2 840 113549 3 2)
814
815OID = 06 08 2A 86 48 86 F7 0D 03 03
816Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
817Description = rc2ECB (1 2 840 113549 3 3)
818
819OID = 06 08 2A 86 48 86 F7 0D 03 04
820Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
821Description = rc4 (1 2 840 113549 3 4)
822
823OID = 06 08 2A 86 48 86 F7 0D 03 05
824Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
825Description = rc4WithMAC (1 2 840 113549 3 5)
826
827OID = 06 08 2A 86 48 86 F7 0D 03 06
828Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
829Description = desx-CBC (1 2 840 113549 3 6)
830
831OID = 06 08 2A 86 48 86 F7 0D 03 07
832Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
833Description = des-EDE3-CBC (1 2 840 113549 3 7)
834
835OID = 06 08 2A 86 48 86 F7 0D 03 08
836Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
837Description = rc5CBC (1 2 840 113549 3 8)
838
839OID = 06 08 2A 86 48 86 F7 0D 03 09
840Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3)
841Description = rc5-CBCPad (1 2 840 113549 3 9)
842
843OID = 06 08 2A 86 48 86 F7 0D 03 0A
844Comment = RSADSI encryptionAlgorithm (1 2 840 113549 3). Formerly called CDMFCBCPad
845Description = desCDMF (1 2 840 113549 3 10)
846
847# Ascom Systech
848
849OID = 06 0A 2B 06 01 04 01 81 3C 07 01 01
850Comment = Ascom Systech
851Description = ascom (1 3 6 1 4 1 188 7 1 1)
852
853OID = 06 0B 2B 06 01 04 01 81 3C 07 01 01 01
854Comment = Ascom Systech
855Description = ideaECB (1 3 6 1 4 1 188 7 1 1 1)
856
857# Microsoft
858
859OID = 06 08 2A 86 48 86 F7 14 04 03
860Comment = Microsoft
861Description = microsoftExcel (1 2 840 113556 4 3)
862
863OID = 06 08 2A 86 48 86 F7 14 04 04
864Comment = Microsoft
865Description = titledWithOID (1 2 840 113556 4 4)
866
867OID = 06 08 2A 86 48 86 F7 14 04 05
868Comment = Microsoft
869Description = microsoftPowerPoint (1 2 840 113556 4 5)
870
871OID = 06 0A 2B 06 01 04 01 82 37 02 01 04
872Comment = Microsoft code signing
873Description = spcIndirectDataContext (1 3 6 1 4 1 311 2 1 4)
874
875OID = 06 0A 2B 06 01 04 01 82 37 02 01 0A
876Comment = Microsoft code signing. Also known as policyLink
877Description = spcAgencyInfo (1 3 6 1 4 1 311 2 1 10)
878
879OID = 06 0A 2B 06 01 04 01 82 37 02 01 0B
880Comment = Microsoft code signing
881Description = spcStatementType (1 3 6 1 4 1 311 2 1 11)
882
883OID = 06 0A 2B 06 01 04 01 82 37 02 01 0C
884Comment = Microsoft code signing
885Description = spcSpOpusInfo (1 3 6 1 4 1 311 2 1 12)
886
887OID = 06 0A 2B 06 01 04 01 82 37 02 01 0E
888Comment = Microsoft
889Description = certExtensions (1 3 6 1 4 1 311 2 1 14)
890
891OID = 06 0A 2B 06 01 04 01 82 37 02 01 0F
892Comment = Microsoft code signing
893Description = spcPelmageData (1 3 6 1 4 1 311 2 1 15)
894
895OID = 06 0A 2B 06 01 04 01 82 37 02 01 14
896Comment = Microsoft code signing. Also known as "glue extension"
897Description = spcLink (type 1) (1 3 6 1 4 1 311 2 1 20)
898
899OID = 06 0A 2B 06 01 04 01 82 37 02 01 15
900Comment = Microsoft
901Description = individualCodeSigning (1 3 6 1 4 1 311 2 1 21)
902
903OID = 06 0A 2B 06 01 04 01 82 37 02 01 16
904Comment = Microsoft
905Description = commercialCodeSigning (1 3 6 1 4 1 311 2 1 22)
906
907OID = 06 0A 2B 06 01 04 01 82 37 02 01 19
908Comment = Microsoft code signing. Also known as "glue extension"
909Description = spcLink (type 2) (1 3 6 1 4 1 311 2 1 25)
910
911OID = 06 0A 2B 06 01 04 01 82 37 02 01 1A
912Comment = Microsoft code signing
913Description = spcMinimalCriteriaInfo (1 3 6 1 4 1 311 2 1 26)
914
915OID = 06 0A 2B 06 01 04 01 82 37 02 01 1B
916Comment = Microsoft code signing
917Description = spcFinancialCriteriaInfo (1 3 6 1 4 1 311 2 1 27)
918
919OID = 06 0A 2B 06 01 04 01 82 37 02 01 1C
920Comment = Microsoft code signing. Also known as "glue extension"
921Description = spcLink (type 3) (1 3 6 1 4 1 311 2 1 28)
922
923OID = 06 0A 2B 06 01 04 01 82 37 03 02 01
924Comment = Microsoft code signing
925Description = timestampCountersignature (1 3 6 1 4 1 311 3 2 1)
926
927OID = 06 0A 2B 06 01 04 01 82 37 0A 01
928Comment = Microsoft PKCS #7 contentType
929Description = certTrustList (1 3 6 1 4 1 311 10 1)
930
931OID = 06 0A 2B 06 01 04 01 82 37 0A 02
932Comment = Microsoft
933Description = nextUpdateLocation (1 3 6 1 4 1 311 10 2)
934
935OID = 06 0A 2B 06 01 04 01 82 37 0A 03 01
936Comment = Microsoft enhanced key usage
937Description = certTrustListSigning (1 3 6 1 4 1 311 10 3 1)
938
939OID = 06 0A 2B 06 01 04 01 82 37 0A 03 02
940Comment = Microsoft enhanced key usage
941Description = timeStampSigning (1 3 6 1 4 1 311 10 3 2)
942
943OID = 06 0A 2B 06 01 04 01 82 37 0A 03 03
944Comment = Microsoft enhanced key usage
945Description = serverGatedCrypto (1 3 6 1 4 1 311 10 3 3)
946
947OID = 06 0A 2B 06 01 04 01 82 37 0A 03 04
948Comment = Microsoft enhanced key usage
949Description = encryptedFileSystem (1 3 6 1 4 1 311 10 3 4)
950
951OID = 06 0A 2B 06 01 04 01 82 37 0A 04 01
952Comment = Microsoft attribute
953Description = yesnoTrustAttr (1 3 6 1 4 1 311 10 4 1)
954
955# UNINETT
956
957OID = 06 0A 2B 06 01 04 01 92 7C 0A 01 01
958Comment = UNINETT PCA
959Description = UNINETT policyIdentifier (1 3 6 1 4 1 2428 10 1 1)
960
961# ICE-TEL
962
963OID = 06 08 2B 06 01 04 01 95 18 0A
964Comment = ICE-TEL CA
965Description = ICE-TEL policyIdentifier (1 3 6 1 4 1 2712 10)
966
967OID = 06 0A 2B 06 01 04 01 95 62 01 01 01
968Comment = ICE-TEL CA policy
969Description = ICE-TEL Italian policyIdentifier (1 3 6 1 4 1 2786 1 1 1)
970
971# cryptlib
972
973OID = 06 09 2B 06 01 04 01 97 55 20 01
974Comment = cryptlib
975Description = cryptlibEnvelope (1 3 6 1 4 1 3029 32 1)
976
977OID = 06 09 2B 06 01 04 01 97 55 20 02
978Comment = cryptlib
979Description = cryptlibPrivateKey (1 3 6 1 4 1 3029 32 2)
980
981OID = 06 0B 2B 06 01 04 01 97 55 2A D7 24 01
982Comment = cryptlib special MPEG-of-cat OID
983Description = mpeg-1 (1 3 6 1 4 1 3029 42 11172 1)
984
985# PKIX
986
987OID = 06 06 2B 06 01 05 05 07
988Comment = PKIX base
989Description = pkix (1 3 6 1 5 5 7)
990
991OID = 06 07 2B 06 01 05 05 07 01
992Comment = PKIX
993Description = privateExtension (1 3 6 1 5 5 7 1)
994
995OID = 06 08 2B 06 01 05 05 07 01 01
996Comment = PKIX private extension
997Description = authorityInfoAccess (1 3 6 1 5 5 7 1 1)
998
999OID = 06 07 2B 06 01 05 05 07 02
1000Comment = PKIX
1001Description = policyQualifierIds (1 3 6 1 5 5 7 2)
1002
1003OID = 06 08 2B 06 01 05 05 07 02 01
1004Comment = PKIX policy qualifier
1005Description = cps (1 3 6 1 5 5 7 2 1)
1006
1007OID = 06 08 2B 06 01 05 05 07 02 02
1008Comment = PKIX policy qualifier
1009Description = unotice (1 3 6 1 5 5 7 2 2)
1010
1011OID = 06 07 2B 06 01 05 05 07 03
1012Comment = PKIX
1013Description = keyPurpose (1 3 6 1 5 5 7 3)
1014
1015OID = 06 08 2B 06 01 05 05 07 03 01
1016Comment = PKIX key purpose
1017Description = serverAuth (1 3 6 1 5 5 7 3 1)
1018
1019OID = 06 08 2B 06 01 05 05 07 03 02
1020Comment = PKIX key purpose
1021Description = clientAuth (1 3 6 1 5 5 7 3 2)
1022
1023OID = 06 08 2B 06 01 05 05 07 03 03
1024Comment = PKIX key purpose
1025Description = codeSigning (1 3 6 1 5 5 7 3 3)
1026
1027OID = 06 08 2B 06 01 05 05 07 03 04
1028Comment = PKIX key purpose
1029Description = emailProtection (1 3 6 1 5 5 7 3 4)
1030
1031OID = 06 08 2B 06 01 05 05 07 03 05
1032Comment = PKIX key purpose
1033Description = ipsecEndSystem (1 3 6 1 5 5 7 3 5)
1034
1035OID = 06 08 2B 06 01 05 05 07 03 06
1036Comment = PKIX key purpose
1037Description = ipsecTunnel (1 3 6 1 5 5 7 3 6)
1038
1039OID = 06 08 2B 06 01 05 05 07 03 07
1040Comment = PKIX key purpose
1041Description = ipsecUser (1 3 6 1 5 5 7 3 7)
1042
1043OID = 06 08 2B 06 01 05 05 07 03 08
1044Comment = PKIX key purpose
1045Description = timeStamping (1 3 6 1 5 5 7 3 8)
1046
1047OID = 06 08 2B 06 01 05 05 07 03 08
1048Comment = PKIX key purpose
1049Description = OCSPSigning (1 3 6 1 5 5 7 3 9)
1050
1051OID = 06 07 2B 06 01 05 05 07 04
1052Comment = PKIX
1053Description = cmpInformationTypes (1 3 6 1 5 5 7 4)
1054
1055OID = 06 08 2B 06 01 05 05 07 04 01
1056Comment = PKIX CMP information
1057Description = caProtEncCert (1 3 6 1 5 5 7 4 1)
1058
1059OID = 06 08 2B 06 01 05 05 07 04 02
1060Comment = PKIX CMP information
1061Description = signKeyPairTypes (1 3 6 1 5 5 7 4 2)
1062
1063OID = 06 08 2B 06 01 05 05 07 04 03
1064Comment = PKIX CMP information
1065Description = encKeyPairTypes (1 3 6 1 5 5 7 4 3)
1066
1067OID = 06 08 2B 06 01 05 05 07 04 04
1068Comment = PKIX CMP information
1069Description = preferredSymmAlg (1 3 6 1 5 5 7 4 4)
1070
1071OID = 06 08 2B 06 01 05 05 07 04 05
1072Comment = PKIX CMP information
1073Description = caKeyUpdateInfo (1 3 6 1 5 5 7 4 5)
1074
1075OID = 06 08 2B 06 01 05 05 07 04 06
1076Comment = PKIX CMP information
1077Description = currentCRL (1 3 6 1 5 5 7 4 6)
1078
1079OID = 06 08 2B 06 01 05 05 07 30 01
1080Comment = PKIX authority info access descriptor
1081Description = ocsp (1 3 6 1 5 5 7 48 1)
1082
1083OID = 06 08 2B 06 01 05 05 07 30 02
1084Comment = PKIX authority info access descriptor
1085Description = caIssuers (1 3 6 1 5 5 7 48 2)
1086
1087# ISAKMP
1088
1089OID = 06 08 2B 06 01 05 05 08 01 01
1090Comment = ISAKMP HMAC algorithm
1091Description = HMAC-MD5 (1 3 6 1 5 5 8 1 1)
1092
1093OID = 06 08 2B 06 01 05 05 08 01 02
1094Comment = ISAKMP HMAC algorithm
1095Description = HMAC-SHA (1 3 6 1 5 5 8 1 2)
1096
1097OID = 06 08 2B 06 01 05 05 08 01 03
1098Comment = ISAKMP HMAC algorithm
1099Description = HMAC-Tiger (1 3 6 1 5 5 8 1 3)
1100
1101# DEC (via ECMA)
1102
1103OID = 06 07 2B 0C 02 87 73 07 01
1104Comment = DASS algorithm
1105Description = decEncryptionAlgorithm (1 3 12 2 1011 7 1)
1106
1107OID = 06 08 2B 0C 02 87 73 07 01 02
1108Comment = DASS encryption algorithm
1109Description = decDEA (1 3 12 2 1011 7 1 2)
1110
1111OID = 06 07 2B 0C 02 87 73 07 02
1112Comment = DASS algorithm
1113Description = decHashAlgorithm (1 3 12 2 1011 7 2)
1114
1115OID = 06 07 2B 0C 02 87 73 07 02 01
1116Comment = DASS hash algorithm
1117Description = decMD2 (1 3 12 2 1011 7 2 1)
1118
1119OID = 06 07 2B 0C 02 87 73 07 02 02
1120Comment = DASS hash algorithm
1121Description = decMD4 (1 3 12 2 1011 7 2 2)
1122
1123OID = 06 07 2B 0C 02 87 73 07 03
1124Comment = DASS algorithm
1125Description = decSignatureAlgorithm (1 3 12 2 1011 7 3)
1126
1127OID = 06 07 2B 0C 02 87 73 07 03 01
1128Comment = DASS signature algorithm
1129Description = decMD2withRSA (1 3 12 2 1011 7 3 1)
1130
1131OID = 06 07 2B 0C 02 87 73 07 03 02
1132Comment = DASS signature algorithm
1133Description = decMD4withRSA (1 3 12 2 1011 7 3 2)
1134
1135OID = 06 07 2B 0C 02 87 73 07 03 03
1136Comment = DASS signature algorithm
1137Description = decDEAMAC (1 3 12 2 1011 7 3 3)
1138
1139# NIST Open Systems Environment (OSE) Implementor's Workshop (OIW),
1140# specialising in oddball and partially-defunct OIDs
1141
1142OID = 06 05 2B 0E 02 1A 05
1143Comment = Unsure about this OID
1144Description = sha (1 3 14 2 26 5)
1145
1146OID = 06 06 2B 0E 03 02 01 01
1147Comment = X.509. Unsure about this OID
1148Description = rsa (1 3 14 3 2 1 1)
1149
1150OID = 06 05 2B 0E 03 02 02
1151Comment = Oddball OIW OID
1152Description = md4WitRSA (1 3 14 3 2 2)
1153
1154OID = 06 05 2B 0E 03 02 03
1155Comment = Oddball OIW OID
1156Description = md5WithRSA (1 3 14 3 2 3)
1157
1158OID = 06 05 2B 0E 03 02 04
1159Comment = Oddball OIW OID
1160Description = md4WithRSAEncryption (1 3 14 3 2 4)
1161
1162OID = 06 06 2B 0E 03 02 02 01
1163Comment = X.509. Deprecated
1164Description = sqmod-N (1 3 14 3 2 2 1)
1165Warning
1166
1167OID = 06 06 2B 0E 03 02 03 01
1168Comment = X.509. Deprecated
1169Description = sqmod-NwithRSA (1 3 14 3 2 3 1)
1170Warning
1171
1172OID = 06 05 2B 0E 03 02 06
1173Description = desECB (1 3 14 3 2 6)
1174
1175OID = 06 05 2B 0E 03 02 07
1176Description = desCBC (1 3 14 3 2 7)
1177
1178OID = 06 05 2B 0E 03 02 08
1179Description = desOFB (1 3 14 3 2 8)
1180
1181OID = 06 05 2B 0E 03 02 09
1182Description = desCFB (1 3 14 3 2 9)
1183
1184OID = 06 05 2B 0E 03 02 0A
1185Description = desMAC (1 3 14 3 2 10)
1186
1187OID = 06 05 2B 0E 03 02 0B
1188Comment = ISO 9796-2, also X9.31 Part 1
1189Description = rsaSignature (1 3 14 3 2 11)
1190
1191# this is used by BSAFE
1192OID = 06 05 2B 0E 03 02 0C
1193Comment = OIW?, supposedly from an incomplete version of SDN.702 (doesn't match final SDN.702)
1194Description = dsa-bsafe (1 3 14 3 2 12)
1195Warning
1196
1197OID = 06 05 2B 0E 03 02 0D
1198Comment = Oddball OIW OID. Incorrectly used by JDK 1.1 in place of (1 3 14 3 2 27)
1199# Their response was that they know it's wrong, but noone uses SHA0 so it won't
1200# cause any problems, right? Note: BSAFE uses this as well!
1201Description = dsaWithSHA-bsafe (1 3 14 3 2 13)
1202Warning
1203
1204# The various md<x>WithRSASIsignature OIDs are for the ANSI X9.31 draft and use
1205# ISO 9796-2 padding rules. This work was derailed during the PKP brouhaha and
1206# is still in progress
1207OID = 06 05 2B 0E 03 02 0E
1208Comment = Oddball OIW OID using 9796-2 padding rules
1209Description = mdc2WithRSASignature (1 3 14 3 2 14)
1210
1211OID = 06 05 2B 0E 03 02 0F
1212Comment = Oddball OIW OID using 9796-2 padding rules
1213Description = shaWithRSASignature (1 3 14 3 2 15)
1214
1215OID = 06 05 2B 0E 03 02 10
1216Comment = Oddball OIW OID. Deprecated, use a plain DH OID instead
1217Description = dhWithCommonModulus (1 3 14 3 2 16)
1218Warning
1219
1220OID = 06 05 2B 0E 03 02 11
1221Comment = Oddball OIW OID. Mode is ECB
1222Description = desEDE (1 3 14 3 2 17)
1223
1224OID = 06 05 2B 0E 03 02 12
1225Comment = Oddball OIW OID
1226Description = sha (1 3 14 3 2 18)
1227
1228OID = 06 05 2B 0E 03 02 13
1229Comment = Oddball OIW OID, DES-based hash, planned for X9.31 Part 2
1230Description = mdc-2 (1 3 14 3 2 19)
1231
1232OID = 06 05 2B 0E 03 02 14
1233Comment = Oddball OIW OID. Deprecated, use a plain DSA OID instead
1234Description = dsaCommon (1 3 14 3 2 20)
1235Warning
1236
1237OID = 06 05 2B 0E 03 02 15
1238Comment = Oddball OIW OID. Deprecated, use a plain dsaWithSHA OID instead
1239Description = dsaCommonWithSHA (1 3 14 3 2 21)
1240Warning
1241
1242OID = 06 05 2B 0E 03 02 16
1243Comment = Oddball OIW OID
1244Description = rsaKeyTransport (1 3 14 3 2 22)
1245
1246OID = 06 05 2B 0E 03 02 17
1247Comment = Oddball OIW OID
1248Description = keyed-hash-seal (1 3 14 3 2 23)
1249
1250OID = 06 05 2B 0E 03 02 18
1251Comment = Oddball OIW OID using 9796-2 padding rules
1252Description = md2WithRSASignature (1 3 14 3 2 24)
1253
1254OID = 06 05 2B 0E 03 02 19
1255Comment = Oddball OIW OID using 9796-2 padding rules
1256Description = md5WithRSASignature (1 3 14 3 2 25)
1257
1258OID = 06 05 2B 0E 03 02 1A
1259Comment = OIW
1260Description = sha1 (1 3 14 3 2 26)
1261
1262# Yet another multiply-assigned OID
1263OID = 06 05 2B 0E 03 02 1B
1264Comment = OIW. This OID may also be assigned as ripemd-160
1265Description = dsaWithSHA1 (1 3 14 3 2 27)
1266
1267OID = 06 05 2B 0E 03 02 1C
1268Comment = OIW
1269Description = dsaWithCommonSHA1 (1 3 14 3 2 28)
1270
1271OID = 06 05 2B 0E 03 02 1D
1272Comment = Oddball OIW OID
1273Description = sha-1WithRSAEncryption (1 3 14 3 2 29)
1274
1275OID = 06 05 2B 0E 03 03 01
1276Comment = Oddball OIW OID
1277Description = simple-strong-auth-mechanism (1 3 14 3 3 1)
1278
1279OID = 06 06 2B 0E 07 02 01 01
1280Comment = Unsure about this OID
1281Description = ElGamal (1 3 14 7 2 1 1)
1282
1283OID = 06 06 2B 0E 07 02 03 01
1284Comment = Unsure about this OID
1285Description = md2WithRSA (1 3 14 7 2 3 1)
1286
1287OID = 06 06 2B 0E 07 02 03 02
1288Comment = Unsure about this OID
1289Description = md2WithElGamal (1 3 14 7 2 3 2)
1290
1291# Teletrust
1292
1293OID = 06 03 2B 24 01
1294Comment = Teletrust document
1295Description = document (1 3 36 1)
1296
1297OID = 06 04 2B 24 01 01
1298Comment = Teletrust document
1299Description = finalVersion (1 3 36 1 1)
1300
1301OID = 06 04 2B 24 01 02
1302Comment = Teletrust document
1303Description = draft (1 3 36 1 2)
1304
1305OID = 06 03 2B 24 02
1306Comment = Teletrust sio
1307Description = sio (1 3 36 2)
1308
1309OID = 06 04 2B 24 02 01
1310Comment = Teletrust sio
1311Description = certificate (1 3 36 2 1)
1312
1313OID = 06 04 2B 24 02 01
1314Comment = Teletrust sio
1315Description = sedu (1 3 36 2 1)
1316
1317OID = 06 03 2B 24 03
1318Comment = Teletrust algorithm
1319Description = algorithm (1 3 36 3)
1320
1321OID = 06 04 2B 24 03 01
1322Comment = Teletrust algorithm
1323Description = encryptionAlgorithm (1 3 36 3 1)
1324
1325OID = 06 05 2B 24 03 01 01
1326Comment = Teletrust encryption algorithm
1327Description = des (1 3 36 3 1 1)
1328
1329OID = 06 06 2B 24 03 01 01 01
1330Comment = Teletrust encryption algorithm
1331Description = desECB_pad (1 3 36 3 1 1 1)
1332
1333OID = 06 07 2B 24 03 01 01 01 01
1334Comment = Teletrust encryption algorithm
1335Description = desECB_ISOpad (1 3 36 3 1 1 1 1)
1336
1337OID = 06 07 2B 24 03 01 01 02 01
1338Comment = Teletrust encryption algorithm
1339Description = desCBC_pad (1 3 36 3 1 1 2 1)
1340
1341OID = 06 08 2B 24 03 01 01 02 01 01
1342Comment = Teletrust encryption algorithm
1343Description = desCBC_ISOpad (1 3 36 3 1 1 2 1 1)
1344
1345OID = 06 05 2B 24 03 01 03
1346Comment = Teletrust encryption algorithm
1347Description = des_3 (1 3 36 3 1 3)
1348
1349OID = 06 07 2B 24 03 01 03 01 01
1350Comment = Teletrust encryption algorithm. EDE triple DES
1351Description = des_3ECB_pad (1 3 36 3 1 3 1 1)
1352
1353OID = 06 08 2B 24 03 01 03 01 01 01
1354Comment = Teletrust encryption algorithm. EDE triple DES
1355Description = des_3ECB_ISOpad (1 3 36 3 1 3 1 1 1)
1356
1357OID = 06 07 2B 24 03 01 03 02 01
1358Comment = Teletrust encryption algorithm. EDE triple DES
1359Description = des_3CBC_pad (1 3 36 3 1 3 2 1)
1360
1361OID = 06 08 2B 24 03 01 03 02 01 01
1362Comment = Teletrust encryption algorithm. EDE triple DES
1363Description = des_3CBC_ISOpad (1 3 36 3 1 3 2 1 1)
1364
1365OID = 06 05 2B 24 03 01 02
1366Comment = Teletrust encryption algorithm
1367Description = idea (1 3 36 3 1 2)
1368
1369OID = 06 06 2B 24 03 01 02 01
1370Comment = Teletrust encryption algorithm
1371Description = ideaECB (1 3 36 3 1 2 1)
1372
1373OID = 06 07 2B 24 03 01 02 01 01
1374Comment = Teletrust encryption algorithm
1375Description = ideaECB_pad (1 3 36 3 1 2 1 1)
1376
1377OID = 06 08 2B 24 03 01 02 01 01 01
1378Comment = Teletrust encryption algorithm
1379Description = ideaECB_ISOpad (1 3 36 3 1 2 1 1 1)
1380
1381OID = 06 06 2B 24 03 01 02 02
1382Comment = Teletrust encryption algorithm
1383Description = ideaCBC (1 3 36 3 1 2 2)
1384
1385OID = 06 07 2B 24 03 01 02 02 01
1386Comment = Teletrust encryption algorithm
1387Description = ideaCBC_pad (1 3 36 3 1 2 2 1)
1388
1389OID = 06 08 2B 24 03 01 02 02 01 01
1390Comment = Teletrust encryption algorithm
1391Description = ideaCBC_ISOpad (1 3 36 3 1 2 2 1 1)
1392
1393OID = 06 06 2B 24 03 01 02 03
1394Comment = Teletrust encryption algorithm
1395Description = ideaOFB (1 3 36 3 1 2 3)
1396
1397OID = 06 06 2B 24 03 01 02 04
1398Comment = Teletrust encryption algorithm
1399Description = ideaCFB (1 3 36 3 1 2 4)
1400
1401OID = 06 05 2B 24 03 01 04
1402Comment = Teletrust encryption algorithm
1403Description = rsaEncryption (1 3 36 3 1 4)
1404
1405OID = 06 08 2B 24 03 01 04 84 00 11
1406Comment = Teletrust encryption algorithm
1407Description = rsaEncryptionWithlmod512expe17 (1 3 36 3 1 4 512 17)
1408
1409OID = 06 05 2B 24 03 01 05
1410Comment = Teletrust encryption algorithm
1411Description = bsi-1 (1 3 36 3 1 5)
1412
1413OID = 06 06 2B 24 03 01 05 01
1414Comment = Teletrust encryption algorithm
1415Description = bsi_1ECB_pad (1 3 36 3 1 5 1)
1416
1417OID = 06 06 2B 24 03 01 05 02
1418Comment = Teletrust encryption algorithm
1419Description = bsi_1CBC_pad (1 3 36 3 1 5 2)
1420
1421OID = 06 07 2B 24 03 01 05 02 01
1422Comment = Teletrust encryption algorithm
1423Description = bsi_1CBC_PEMpad (1 3 36 3 1 5 2 1)
1424
1425OID = 06 04 2B 24 03 02
1426Comment = Teletrust algorithm
1427Description = hashAlgorithm (1 3 36 3 2)
1428
1429OID = 06 05 2B 24 03 02 01
1430Comment = Teletrust hash algorithm
1431Description = ripemd160 (1 3 36 3 2 1)
1432
1433OID = 06 05 2B 24 03 02 02
1434Comment = Teletrust hash algorithm
1435Description = ripemd128 (1 3 36 3 2 2)
1436
1437OID = 06 05 2B 24 03 02 03
1438Comment = Teletrust hash algorithm
1439Description = ripemd256 (1 3 36 3 2 3)
1440
1441OID = 06 05 2B 24 03 02 04
1442Comment = Teletrust hash algorithm
1443Description = mdc2singleLength (1 3 36 3 2 4)
1444
1445OID = 06 05 2B 24 03 02 05
1446Comment = Teletrust hash algorithm
1447Description = mdc2doubleLength (1 3 36 3 2 5)
1448
1449OID = 06 04 2B 24 03 03
1450Comment = Teletrust algorithm
1451Description = signatureAlgorithm (1 3 36 3 3)
1452
1453OID = 06 05 2B 24 03 03 01
1454Comment = Teletrust signature algorithm
1455Description = rsaSignature (1 3 36 3 3 1)
1456
1457OID = 06 06 2B 24 03 03 01 01
1458Comment = Teletrust signature algorithm
1459Description = rsaSignatureWithsha1 (1 3 36 3 3 1 1)
1460
1461# What *were* they thinking?
1462OID = 06 09 2B 24 03 03 01 01 84 00 02
1463Comment = Teletrust signature algorithm
1464Description = rsaSignatureWithsha1_l512_l2 (1 3 36 3 3 1 1 512 2)
1465OID = 06 09 2B 24 03 03 01 01 85 00 02
1466Comment = Teletrust signature algorithm
1467Description = rsaSignatureWithsha1_l640_l2 (1 3 36 3 3 1 1 640 2)
1468OID = 06 09 2B 24 03 03 01 01 86 00 02
1469Comment = Teletrust signature algorithm
1470Description = rsaSignatureWithsha1_l768_l2 (1 3 36 3 3 1 1 768 2)
1471OID = 06 09 2B 24 03 03 01 01 87 00 02
1472Comment = Teletrust signature algorithm
1473Description = rsaSignatureWithsha1_l896_l2 (1 3 36 3 3 1 1 892 2)
1474OID = 06 09 2B 24 03 03 01 01 88 00 02
1475Comment = Teletrust signature algorithm
1476Description = rsaSignatureWithsha1_l1024_l2 (1 3 36 3 3 1 1 1024 2)
1477OID = 06 09 2B 24 03 03 01 01 84 00 03
1478Comment = Teletrust signature algorithm
1479Description = rsaSignatureWithsha1_l512_l3 (1 3 36 3 3 1 1 512 3)
1480OID = 06 09 2B 24 03 03 01 01 85 00 03
1481Comment = Teletrust signature algorithm
1482Description = rsaSignatureWithsha1_l640_l3 (1 3 36 3 3 1 1 640 3)
1483OID = 06 09 2B 24 03 03 01 01 86 00 03
1484Comment = Teletrust signature algorithm
1485Description = rsaSignatureWithsha1_l768_l3 (1 3 36 3 3 1 1 768 3)
1486OID = 06 09 2B 24 03 03 01 01 87 00 03
1487Comment = Teletrust signature algorithm
1488Description = rsaSignatureWithsha1_l896_l3 (1 3 36 3 3 1 1 896 3)
1489OID = 06 09 2B 24 03 03 01 01 88 00 03
1490Comment = Teletrust signature algorithm
1491Description = rsaSignatureWithsha1_l1024_l3 (1 3 36 3 3 1 1 1024 3)
1492OID = 06 09 2B 24 03 03 01 01 84 00 05
1493Comment = Teletrust signature algorithm
1494Description = rsaSignatureWithsha1_l512_l5 (1 3 36 3 3 1 1 512 5)
1495OID = 06 09 2B 24 03 03 01 01 85 00 05
1496Comment = Teletrust signature algorithm
1497Description = rsaSignatureWithsha1_l640_l5 (1 3 36 3 3 1 1 640 5)
1498OID = 06 09 2B 24 03 03 01 01 86 00 05
1499Comment = Teletrust signature algorithm
1500Description = rsaSignatureWithsha1_l768_l5 (1 3 36 3 3 1 1 768 5)
1501OID = 06 09 2B 24 03 03 01 01 87 00 05
1502Comment = Teletrust signature algorithm
1503Description = rsaSignatureWithsha1_l896_l5 (1 3 36 3 3 1 1 896 5)
1504OID = 06 09 2B 24 03 03 01 01 88 00 05
1505Comment = Teletrust signature algorithm
1506Description = rsaSignatureWithsha1_l1024_l5 (1 3 36 3 3 1 1 1024 5)
1507OID = 06 09 2B 24 03 03 01 01 84 00 09
1508Comment = Teletrust signature algorithm
1509Description = rsaSignatureWithsha1_l512_l9 (1 3 36 3 3 1 1 512 9)
1510OID = 06 09 2B 24 03 03 01 01 85 00 09
1511Comment = Teletrust signature algorithm
1512Description = rsaSignatureWithsha1_l640_l9 (1 3 36 3 3 1 1 640 9)
1513OID = 06 09 2B 24 03 03 01 01 86 00 09
1514Comment = Teletrust signature algorithm
1515Description = rsaSignatureWithsha1_l768_l9 (1 3 36 3 3 1 1 768 9)
1516OID = 06 09 2B 24 03 03 01 01 87 00 09
1517Comment = Teletrust signature algorithm
1518Description = rsaSignatureWithsha1_l896_l9 (1 3 36 3 3 1 1 896 9)
1519OID = 06 09 2B 24 03 03 01 01 88 00 09
1520Comment = Teletrust signature algorithm
1521Description = rsaSignatureWithsha1_l1024_l9 (1 3 36 3 3 1 1 1024 9)
1522OID = 06 09 2B 24 03 03 01 01 84 00 11
1523Comment = Teletrust signature algorithm
1524Description = rsaSignatureWithsha1_l512_l11 (1 3 36 3 3 1 1 512 11)
1525OID = 06 09 2B 24 03 03 01 01 85 00 11
1526Comment = Teletrust signature algorithm
1527Description = rsaSignatureWithsha1_l640_l11 (1 3 36 3 3 1 1 640 11)
1528OID = 06 09 2B 24 03 03 01 01 86 00 11
1529Comment = Teletrust signature algorithm
1530Description = rsaSignatureWithsha1_l768_l11 (1 3 36 3 3 1 1 768 11)
1531OID = 06 09 2B 24 03 03 01 01 87 00 11
1532Comment = Teletrust signature algorithm
1533Description = rsaSignatureWithsha1_l896_l11 (1 3 36 3 3 1 1 896 11)
1534OID = 06 09 2B 24 03 03 01 01 88 00 11
1535Comment = Teletrust signature algorithm
1536Description = rsaSignatureWithsha1_l1024_l11 (1 3 36 3 3 1 1 1024 11)
1537
1538OID = 06 06 2B 24 03 03 01 02
1539Comment = Teletrust signature algorithm
1540Description = rsaSignatureWithripemd160 (1 3 36 3 3 1 2)
1541
1542OID = 06 09 2B 24 03 03 01 02 84 00 02
1543Comment = Teletrust signature algorithm
1544Description = rsaSignatureWithripemd160_l512_l2 (1 3 36 3 3 1 2 512 2)
1545OID = 06 09 2B 24 03 03 01 02 85 00 02
1546Comment = Teletrust signature algorithm
1547Description = rsaSignatureWithripemd160_l640_l2 (1 3 36 3 3 1 2 640 2)
1548OID = 06 09 2B 24 03 03 01 02 86 00 02
1549Comment = Teletrust signature algorithm
1550Description = rsaSignatureWithripemd160_l768_l2 (1 3 36 3 3 1 2 768 2)
1551OID = 06 09 2B 24 03 03 01 02 87 00 02
1552Comment = Teletrust signature algorithm
1553Description = rsaSignatureWithripemd160_l896_l2 (1 3 36 3 3 1 2 892 2)
1554OID = 06 09 2B 24 03 03 01 02 88 00 02
1555Comment = Teletrust signature algorithm
1556Description = rsaSignatureWithripemd160_l1024_l2 (1 3 36 3 3 1 2 1024 2)
1557OID = 06 09 2B 24 03 03 01 02 84 00 03
1558Comment = Teletrust signature algorithm
1559Description = rsaSignatureWithripemd160_l512_l3 (1 3 36 3 3 1 2 512 3)
1560OID = 06 09 2B 24 03 03 01 02 85 00 03
1561Comment = Teletrust signature algorithm
1562Description = rsaSignatureWithripemd160_l640_l3 (1 3 36 3 3 1 2 640 3)
1563OID = 06 09 2B 24 03 03 01 02 86 00 03
1564Comment = Teletrust signature algorithm
1565Description = rsaSignatureWithripemd160_l768_l3 (1 3 36 3 3 1 2 768 3)
1566OID = 06 09 2B 24 03 03 01 02 87 00 03
1567Comment = Teletrust signature algorithm
1568Description = rsaSignatureWithripemd160_l896_l3 (1 3 36 3 3 1 2 896 3)
1569OID = 06 09 2B 24 03 03 01 02 88 00 03
1570Comment = Teletrust signature algorithm
1571Description = rsaSignatureWithripemd160_l1024_l3 (1 3 36 3 3 1 2 1024 3)
1572OID = 06 09 2B 24 03 03 01 02 84 00 05
1573Comment = Teletrust signature algorithm
1574Description = rsaSignatureWithripemd160_l512_l5 (1 3 36 3 3 1 2 512 5)
1575OID = 06 09 2B 24 03 03 01 02 85 00 05
1576Comment = Teletrust signature algorithm
1577Description = rsaSignatureWithripemd160_l640_l5 (1 3 36 3 3 1 2 640 5)
1578OID = 06 09 2B 24 03 03 01 02 86 00 05
1579Comment = Teletrust signature algorithm
1580Description = rsaSignatureWithripemd160_l768_l5 (1 3 36 3 3 1 2 768 5)
1581OID = 06 09 2B 24 03 03 01 02 87 00 05
1582Comment = Teletrust signature algorithm
1583Description = rsaSignatureWithripemd160_l896_l5 (1 3 36 3 3 1 2 896 5)
1584OID = 06 09 2B 24 03 03 01 02 88 00 05
1585Comment = Teletrust signature algorithm
1586Description = rsaSignatureWithripemd160_l1024_l5 (1 3 36 3 3 1 2 1024 5)
1587OID = 06 09 2B 24 03 03 01 02 84 00 09
1588Comment = Teletrust signature algorithm
1589Description = rsaSignatureWithripemd160_l512_l9 (1 3 36 3 3 1 2 512 9)
1590OID = 06 09 2B 24 03 03 01 02 85 00 09
1591Comment = Teletrust signature algorithm
1592Description = rsaSignatureWithripemd160_l640_l9 (1 3 36 3 3 1 2 640 9)
1593OID = 06 09 2B 24 03 03 01 02 86 00 09
1594Comment = Teletrust signature algorithm
1595Description = rsaSignatureWithripemd160_l768_l9 (1 3 36 3 3 1 2 768 9)
1596OID = 06 09 2B 24 03 03 01 02 87 00 09
1597Comment = Teletrust signature algorithm
1598Description = rsaSignatureWithripemd160_l896_l9 (1 3 36 3 3 1 2 896 9)
1599OID = 06 09 2B 24 03 03 01 02 88 00 09
1600Comment = Teletrust signature algorithm
1601Description = rsaSignatureWithripemd160_l1024_l9 (1 3 36 3 3 1 2 1024 9)
1602OID = 06 09 2B 24 03 03 01 02 84 00 11
1603Comment = Teletrust signature algorithm
1604Description = rsaSignatureWithripemd160_l512_l11 (1 3 36 3 3 1 2 512 11)
1605OID = 06 09 2B 24 03 03 01 02 85 00 11
1606Comment = Teletrust signature algorithm
1607Description = rsaSignatureWithripemd160_l640_l11 (1 3 36 3 3 1 2 640 11)
1608OID = 06 09 2B 24 03 03 01 02 86 00 11
1609Comment = Teletrust signature algorithm
1610Description = rsaSignatureWithripemd160_l768_l11 (1 3 36 3 3 1 2 768 11)
1611OID = 06 09 2B 24 03 03 01 02 87 00 11
1612Comment = Teletrust signature algorithm
1613Description = rsaSignatureWithripemd160_l896_l11 (1 3 36 3 3 1 2 896 11)
1614OID = 06 09 2B 24 03 03 01 02 88 00 11
1615Comment = Teletrust signature algorithm
1616Description = rsaSignatureWithripemd160_l1024_l11 (1 3 36 3 3 1 2 1024 11)
1617
1618OID = 06 06 2B 24 03 03 01 03
1619Comment = Teletrust signature algorithm
1620Description = rsaSignatureWithrimpemd128 (1 3 36 3 3 1 3)
1621
1622OID = 06 06 2B 24 03 03 01 04
1623Comment = Teletrust signature algorithm
1624Description = rsaSignatureWithrimpemd256 (1 3 36 3 3 1 4)
1625
1626OID = 06 05 2B 24 03 03 02
1627Comment = Teletrust signature algorithm
1628Description = ecsieSign (1 3 36 3 3 2)
1629
1630OID = 06 06 2B 24 03 03 02 01
1631Comment = Teletrust signature algorithm
1632Description = ecsieSignWithsha1 (1 3 36 3 3 2 1)
1633
1634OID = 06 06 2B 24 03 03 02 02
1635Comment = Teletrust signature algorithm
1636Description = ecsieSignWithripemd160 (1 3 36 3 3 2 2)
1637
1638OID = 06 06 2B 24 03 03 02 03
1639Comment = Teletrust signature algorithm
1640Description = ecsieSignWithmd2 (1 3 36 3 3 2 3)
1641
1642OID = 06 06 2B 24 03 03 02 04
1643Comment = Teletrust signature algorithm
1644Description = ecsieSignWithmd5 (1 3 36 3 3 2 4)
1645
1646OID = 06 04 2B 24 03 04
1647Comment = Teletrust algorithm
1648Description = signatureScheme (1 3 36 3 4)
1649
1650OID = 06 05 2B 24 03 04 01
1651Comment = Teletrust signature scheme
1652Description = sigS_ISO9796-1 (1 3 36 3 4 1)
1653
1654OID = 06 05 2B 24 03 04 02
1655Comment = Teletrust signature scheme
1656Description = sigS_ISO9796-2 (1 3 36 3 4 2)
1657
1658OID = 06 05 2B 24 03 04 02 01
1659Comment = Teletrust signature scheme. Unsure what this is supposed to be
1660Description = sigS_ISO9796-2Withred (1 3 36 3 4 2 1)
1661
1662OID = 06 06 2B 24 03 04 02 02
1663Comment = Teletrust signature scheme. Unsure what this is supposed to be
1664Description = sigS_ISO9796-2Withrsa (1 3 36 3 4 2 2)
1665
1666OID = 06 06 2B 24 03 04 02 03
1667Comment = Teletrust signature scheme. 9796-2 with random number in padding field
1668Description = sigS_ISO9796-2Withrnd (1 3 36 3 4 2 3)
1669
1670OID = 06 03 2B 24 04
1671Comment = Teletrust attribute
1672Description = attribute (1 3 36 4)
1673
1674OID = 06 03 2B 24 05
1675Comment = Teletrust policy
1676Description = policy (1 3 36 5)
1677
1678OID = 06 03 2B 24 06
1679Comment = Teletrust API
1680Description = api (1 3 36 6)
1681
1682OID = 06 04 2B 24 06 01
1683Comment = Teletrust API
1684Description = manufacturer-specific_api (1 3 36 6 1)
1685
1686OID = 06 05 2B 24 06 01 01
1687Comment = Teletrust API
1688Description = utimaco-api (1 3 36 6 1 1)
1689
1690OID = 06 04 2B 24 06 02
1691Comment = Teletrust API
1692Description = functionality-specific_api (1 3 36 6 2)
1693
1694OID = 06 03 2B 24 07
1695Comment = Teletrust key management
1696Description = keymgmnt (1 3 36 7)
1697
1698OID = 06 04 2B 24 07 01
1699Comment = Teletrust key management
1700Description = keyagree (1 3 36 7 1)
1701
1702OID = 06 05 2B 24 07 01 01
1703Comment = Teletrust key management
1704Description = bsiPKE (1 3 36 7 1 1)
1705
1706OID = 06 04 2B 24 07 02
1707Comment = Teletrust key management
1708Description = keytrans (1 3 36 7 2)
1709
1710OID = 06 04 2B 24 07 02 01
1711Comment = Teletrust key management. 9796-2 with key stored in hash field
1712Description = encISO9796-2Withrsa (1 3 36 7 2 1)
1713
1714# Thawte
1715
1716OID = 06 04 2B 65 01 04
1717Comment = Thawte
1718Description = thawte-ce (1 3 101 1 4)
1719
1720OID = 06 05 2B 65 01 04 01
1721Comment = Thawte certificate extension
1722Description = strongExtranet (1 3 101 1 4 1)
1723
1724# X.520
1725
1726OID = 06 03 55 04 00
1727Comment = X.520 id-at (2 5 4)
1728Description = objectClass (2 5 4 0)
1729
1730OID = 06 03 55 04 01
1731Comment = X.520 id-at (2 5 4)
1732Description = aliasedEntryName (2 5 4 1)
1733
1734OID = 06 03 55 04 02
1735Comment = X.520 id-at (2 5 4)
1736Description = knowledgeInformation (2 5 4 2)
1737
1738OID = 06 03 55 04 03
1739Comment = X.520 id-at (2 5 4)
1740Description = commonName (2 5 4 3)
1741
1742OID = 06 03 55 04 04
1743Comment = X.520 id-at (2 5 4)
1744Description = surname (2 5 4 4)
1745
1746OID = 06 03 55 04 05
1747Comment = X.520 id-at (2 5 4)
1748Description = serialNumber (2 5 4 5)
1749
1750OID = 06 03 55 04 06
1751Comment = X.520 id-at (2 5 4)
1752Description = countryName (2 5 4 6)
1753
1754OID = 06 03 55 04 07
1755Comment = X.520 id-at (2 5 4)
1756Description = localityName (2 5 4 7)
1757
1758OID = 06 04 55 04 07 01
1759Comment = X.520 id-at (2 5 4)
1760Description = collectiveLocalityName (2 5 4 7 1)
1761
1762OID = 06 03 55 04 08
1763Comment = X.520 id-at (2 5 4)
1764Description = stateOrProvinceName (2 5 4 8)
1765
1766OID = 06 04 55 04 08 01
1767Comment = X.520 id-at (2 5 4)
1768Description = collectiveStateOrProvinceName (2 5 4 8 1)
1769
1770OID = 06 03 55 04 09
1771Comment = X.520 id-at (2 5 4)
1772Description = streetAddress (2 5 4 9)
1773
1774OID = 06 04 55 04 09 01
1775Comment = X.520 id-at (2 5 4)
1776Description = collectiveStreetAddress (2 5 4 9 1)
1777
1778OID = 06 03 55 04 0A
1779Comment = X.520 id-at (2 5 4)
1780Description = organizationName (2 5 4 10)
1781
1782OID = 06 04 55 04 0A 01
1783Comment = X.520 id-at (2 5 4)
1784Description = collectiveOrganizationName (2 5 4 10 1)
1785
1786OID = 06 03 55 04 0B
1787Comment = X.520 id-at (2 5 4)
1788Description = organizationalUnitName (2 5 4 11)
1789
1790OID = 06 04 55 04 0B 01
1791Comment = X.520 id-at (2 5 4)
1792Description = collectiveOrganizationalUnitName (2 5 4 11 1)
1793
1794OID = 06 03 55 04 0C
1795Comment = X.520 id-at (2 5 4)
1796Description = title (2 5 4 12)
1797
1798OID = 06 03 55 04 0D
1799Comment = X.520 id-at (2 5 4)
1800Description = description (2 5 4 13)
1801
1802OID = 06 03 55 04 0E
1803Comment = X.520 id-at (2 5 4)
1804Description = searchGuide (2 5 4 14)
1805
1806OID = 06 03 55 04 0F
1807Comment = X.520 id-at (2 5 4)
1808Description = businessCategory (2 5 4 15)
1809
1810OID = 06 03 55 04 10
1811Comment = X.520 id-at (2 5 4)
1812Description = postalAddress (2 5 4 16)
1813
1814OID = 06 04 55 04 10 01
1815Comment = X.520 id-at (2 5 4)
1816Description = collectivePostalAddress (2 5 4 16 1)
1817
1818OID = 06 03 55 04 11
1819Comment = X.520 id-at (2 5 4)
1820Description = postalCode (2 5 4 17)
1821
1822OID = 06 04 55 04 11 01
1823Comment = X.520 id-at (2 5 4)
1824Description = collectivePostalCode (2 5 4 17 1)
1825
1826OID = 06 03 55 04 12
1827Comment = X.520 id-at (2 5 4)
1828Description = postOfficeBox (2 5 4 18)
1829
1830OID = 06 04 55 04 12 01
1831Comment = X.520 id-at (2 5 4)
1832Description = collectivePostOfficeBox (2 5 4 18 1)
1833
1834OID = 06 03 55 04 13
1835Comment = X.520 id-at (2 5 4)
1836Description = physicalDeliveryOfficeName (2 5 4 19)
1837
1838OID = 06 04 55 04 13 01
1839Comment = X.520 id-at (2 5 4)
1840Description = collectivePhysicalDeliveryOfficeName (2 5 4 19 1)
1841
1842OID = 06 03 55 04 14
1843Comment = X.520 id-at (2 5 4)
1844Description = telephoneNumber (2 5 4 20)
1845
1846OID = 06 04 55 04 14 01
1847Comment = X.520 id-at (2 5 4)
1848Description = collectiveTelephoneNumber (2 5 4 20 1)
1849
1850OID = 06 03 55 04 15
1851Comment = X.520 id-at (2 5 4)
1852Description = telexNumber (2 5 4 21)
1853
1854OID = 06 04 55 04 15 01
1855Comment = X.520 id-at (2 5 4)
1856Description = collectiveTelexNumber (2 5 4 21 1)
1857
1858OID = 06 03 55 04 16
1859Comment = X.520 id-at (2 5 4)
1860Description = teletexTerminalIdentifier (2 5 4 22)
1861
1862OID = 06 04 55 04 16 01
1863Comment = X.520 id-at (2 5 4)
1864Description = collectiveTeletexTerminalIdentifier (2 5 4 22 1)
1865
1866OID = 06 03 55 04 17
1867Comment = X.520 id-at (2 5 4)
1868Description = facsimileTelephoneNumber (2 5 4 23)
1869
1870OID = 06 04 55 04 17 01
1871Comment = X.520 id-at (2 5 4)
1872Description = collectiveFacsimileTelephoneNumber (2 5 4 23 1)
1873
1874OID = 06 03 55 04 18
1875Comment = X.520 id-at (2 5 4)
1876Description = x121Address (2 5 4 24)
1877
1878OID = 06 03 55 04 19
1879Comment = X.520 id-at (2 5 4)
1880Description = internationalISDNNumber (2 5 4 25)
1881
1882OID = 06 04 55 04 19 01
1883Comment = X.520 id-at (2 5 4)
1884Description = collectiveInternationalISDNNumber (2 5 4 25 1)
1885
1886OID = 06 03 55 04 1A
1887Comment = X.520 id-at (2 5 4)
1888Description = registeredAddress (2 5 4 26)
1889
1890OID = 06 03 55 04 1B
1891Comment = X.520 id-at (2 5 4)
1892Description = destinationIndicator (2 5 4 27)
1893
1894OID = 06 03 55 04 1C
1895Comment = X.520 id-at (2 5 4)
1896Description = preferredDeliveryMehtod (2 5 4 28)
1897
1898OID = 06 03 55 04 1D
1899Comment = X.520 id-at (2 5 4)
1900Description = presentationAddress (2 5 4 29)
1901
1902OID = 06 03 55 04 1E
1903Comment = X.520 id-at (2 5 4)
1904Description = supportedApplicationContext (2 5 4 30)
1905
1906OID = 06 03 55 04 1F
1907Comment = X.520 id-at (2 5 4)
1908Description = member (2 5 4 31)
1909
1910OID = 06 03 55 04 20
1911Comment = X.520 id-at (2 5 4)
1912Description = owner (2 5 4 32)
1913
1914OID = 06 03 55 04 21
1915Comment = X.520 id-at (2 5 4)
1916Description = roleOccupant (2 5 4 33)
1917
1918OID = 06 03 55 04 22
1919Comment = X.520 id-at (2 5 4)
1920Description = seeAlso (2 5 4 34)
1921
1922OID = 06 03 55 04 23
1923Comment = X.520 id-at (2 5 4)
1924Description = userPassword (2 5 4 35)
1925
1926OID = 06 03 55 04 24
1927Comment = X.520 id-at (2 5 4)
1928Description = userCertificate (2 5 4 36)
1929
1930OID = 06 03 55 04 25
1931Comment = X.520 id-at (2 5 4)
1932Description = caCertificate (2 5 4 37)
1933
1934OID = 06 03 55 04 26
1935Comment = X.520 id-at (2 5 4)
1936Description = authorityRevocationList (2 5 4 38)
1937
1938OID = 06 03 55 04 27
1939Comment = X.520 id-at (2 5 4)
1940Description = certificateRevocationList (2 5 4 39)
1941
1942OID = 06 03 55 04 28
1943Comment = X.520 id-at (2 5 4)
1944Description = crossCertificatePair (2 5 4 40)
1945
1946OID = 06 03 55 04 29
1947Comment = X.520 id-at (2 5 4)
1948Description = name (2 5 4 41)
1949
1950OID = 06 03 55 04 2A
1951Comment = X.520 id-at (2 5 4)
1952Description = givenName (2 5 4 42)
1953
1954OID = 06 03 55 04 2B
1955Comment = X.520 id-at (2 5 4)
1956Description = initials (2 5 4 43)
1957
1958OID = 06 03 55 04 2C
1959Comment = X.520 id-at (2 5 4)
1960Description = generationQualifier (2 5 4 44)
1961
1962OID = 06 03 55 04 2D
1963Comment = X.520 id-at (2 5 4)
1964Description = uniqueIdentifier (2 5 4 45)
1965
1966OID = 06 03 55 04 2E
1967Comment = X.520 id-at (2 5 4)
1968Description = dnQualifier (2 5 4 46)
1969
1970OID = 06 03 55 04 2F
1971Comment = X.520 id-at (2 5 4)
1972Description = enhancedSearchGuide (2 5 4 47)
1973
1974OID = 06 03 55 04 30
1975Comment = X.520 id-at (2 5 4)
1976Description = protocolInformation (2 5 4 48)
1977
1978OID = 06 03 55 04 31
1979Comment = X.520 id-at (2 5 4)
1980Description = distinguishedName (2 5 4 49)
1981
1982OID = 06 03 55 04 32
1983Comment = X.520 id-at (2 5 4)
1984Description = uniqueMember (2 5 4 50)
1985
1986OID = 06 03 55 04 33
1987Comment = X.520 id-at (2 5 4)
1988Description = houseIdentifier (2 5 4 51)
1989
1990OID = 06 03 55 04 34
1991Comment = X.520 id-at (2 5 4)
1992Description = supportedAlgorithms (2 5 4 52)
1993
1994OID = 06 03 55 04 35
1995Comment = X.520 id-at (2 5 4)
1996Description = deltaRevocationList (2 5 4 53)
1997
1998OID = 06 03 55 04 3A
1999Comment = X.520 id-at (2 5 4)
2000Description = crossCertificatePair (2 5 4 58)
2001
2002# X500 algorithms
2003
2004OID = 06 02 55 08
2005Description = X.500-Algorithms (2 5 8)
2006
2007OID = 06 03 55 08 01
2008Description = X.500-Alg-Encryption (2 5 8 1)
2009
2010OID = 06 04 55 08 01 01
2011Comment = X.500 algorithms. Ambiguous, since no padding rules specified
2012Description = rsa (2 5 8 1 1)
2013Warning
2014
2015# X.509. Some of the smaller values are from early X.509 drafts with
2016# cross-pollination from X9.55 and are now deprecated. Alternative OIDs are
2017# marked if these are known. In some cases there are multiple generations of
2018# superseded OIDs
2019
2020OID = 06 03 55 1D 01
2021Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 35) instead
2022Description = authorityKeyIdentifier (2 5 29 1)
2023Warning
2024
2025OID = 06 03 55 1D 02
2026Comment = X.509 id-ce (2 5 29). Obsolete, use keyUsage/extKeyUsage instead
2027Description = keyAttributes (2 5 29 2)
2028Warning
2029
2030OID = 06 03 55 1D 03
2031Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 32) instead
2032Description = certificatePolicies (2 5 29 3)
2033Warning
2034
2035OID = 06 03 55 1D 04
2036Comment = X.509 id-ce (2 5 29). Obsolete, use keyUsage/extKeyUsage instead
2037Description = keyUsageRestriction (2 5 29 4)
2038Warning
2039
2040OID = 06 03 55 1D 05
2041Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 33) instead
2042Description = policyMapping (2 5 29 5)
2043Warning
2044
2045OID = 06 03 55 1D 06
2046Comment = X.509 id-ce (2 5 29). Obsolete, use nameConstraints instead
2047Description = subtreesConstraint (2 5 29 6)
2048Warning
2049
2050OID = 06 03 55 1D 07
2051Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 17) instead
2052Description = subjectAltName (2 5 29 7)
2053Warning
2054
2055OID = 06 03 55 1D 08
2056Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 18) instead
2057Description = issuerAltName (2 5 29 8)
2058Warning
2059
2060OID = 06 03 55 1D 09
2061Comment = X.509 id-ce (2 5 29)
2062Description = subjectDirectoryAttributes (2 5 29 9)
2063
2064OID = 06 03 55 1D 0A
2065Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 19) instead
2066Description = basicConstraints (2 5 29 10)
2067Warning
2068
2069OID = 06 03 55 1D 0B
2070Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 30) instead
2071Description = nameConstraints (2 5 29 11)
2072Warning
2073
2074OID = 06 03 55 1D 0C
2075Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 36) instead
2076Description = policyConstraints (2 5 29 12)
2077Warning
2078
2079OID = 06 03 55 1D 0D
2080Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 19) instead
2081Description = basicConstraints (2 5 29 13)
2082Warning
2083
2084OID = 06 03 55 1D 0E
2085Comment = X.509 id-ce (2 5 29)
2086Description = subjectKeyIdentifier (2 5 29 14)
2087
2088OID = 06 03 55 1D 0F
2089Comment = X.509 id-ce (2 5 29)
2090Description = keyUsage (2 5 29 15)
2091
2092OID = 06 03 55 1D 10
2093Comment = X.509 id-ce (2 5 29)
2094Description = privateKeyUsagePeriod (2 5 29 16)
2095
2096OID = 06 03 55 1D 11
2097Comment = X.509 id-ce (2 5 29)
2098Description = subjectAltName (2 5 29 17)
2099
2100OID = 06 03 55 1D 12
2101Comment = X.509 id-ce (2 5 29)
2102Description = issuerAltName (2 5 29 18)
2103
2104OID = 06 03 55 1D 13
2105Comment = X.509 id-ce (2 5 29)
2106Description = basicConstraints (2 5 29 19)
2107
2108OID = 06 03 55 1D 14
2109Comment = X.509 id-ce (2 5 29)
2110Description = cRLNumber (2 5 29 20)
2111
2112OID = 06 03 55 1D 15
2113Comment = X.509 id-ce (2 5 29)
2114Description = cRLReason (2 5 29 21)
2115
2116OID = 06 03 55 1D 16
2117Comment = X.509 id-ce (2 5 29). Deprecated, alternative OID uncertain
2118Description = expirationDate (2 5 29 22)
2119Warning
2120
2121OID = 06 03 55 1D 17
2122Comment = X.509 id-ce (2 5 29)
2123Description = instructionCode (2 5 29 23)
2124
2125OID = 06 03 55 1D 18
2126Comment = X.509 id-ce (2 5 29)
2127Description = invalidityDate (2 5 29 24)
2128
2129OID = 06 03 55 1D 19
2130Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 31) instead
2131Description = cRLDistributionPoints (2 5 29 25) deprecated
2132Warning
2133
2134OID = 06 03 55 1D 1A
2135Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 28) instead
2136Description = issuingDistributionPoint (2 5 29 26)
2137Warning
2138
2139OID = 06 03 55 1D 1B
2140Comment = X.509 id-ce (2 5 29)
2141Description = deltaCRLIndicator (2 5 29 27)
2142
2143OID = 06 03 55 1D 1C
2144Comment = X.509 id-ce (2 5 29)
2145Description = issuingDistributionPoint (2 5 29 28)
2146
2147OID = 06 03 55 1D 1D
2148Comment = X.509 id-ce (2 5 29)
2149Description = certificateIssuer (2 5 29 29)
2150
2151OID = 06 03 55 1D 1E
2152Comment = X.509 id-ce (2 5 29)
2153Description = nameConstraints (2 5 29 30)
2154
2155OID = 06 03 55 1D 1F
2156Comment = X.509 id-ce (2 5 29)
2157Description = cRLDistributionPoints (2 5 29 31)
2158
2159OID = 06 03 55 1D 20
2160Comment = X.509 id-ce (2 5 29)
2161Description = certificatePolicies (2 5 29 32)
2162
2163OID = 06 03 55 1D 21
2164Comment = X.509 id-ce (2 5 29)
2165Description = policyMappings (2 5 29 33)
2166
2167OID = 06 03 55 1D 22
2168Comment = X.509 id-ce (2 5 29). Deprecated, use (2 5 29 36) instead
2169Description = policyConstraints (2 5 29 34)
2170Warning
2171
2172OID = 06 03 55 1D 23
2173Comment = X.509 id-ce (2 5 29)
2174Description = authorityKeyIdentifier (2 5 29 35)
2175
2176OID = 06 03 55 1D 24
2177Comment = X.509 id-ce (2 5 29)
2178Description = policyConstraints (2 5 29 36)
2179
2180OID = 06 03 55 1D 25
2181Comment = X.509 id-ce (2 5 29)
2182Description = extKeyUsage (2 5 29 37)
2183
2184OID = 06 04 55 1D 25 00
2185Comment = X.509 id-ce (2 5 29)
2186Description = anyExtendedKeyUsage (2 5 29 37 0)
2187
2188
2189# DMS-SDN-702
2190
2191OID = 06 09 60 86 48 01 65 02 01 01 01
2192Comment = DMS-SDN-702
2193Description = sdnsSignatureAlgorithm (2 16 840 1 101 2 1 1 1)
2194
2195OID = 06 09 60 86 48 01 65 02 01 01 02
2196Comment = DMS-SDN-702. Formerly known as mosaicSignatureAlgorithm, this OID is better known as dsaWithSHA-1.
2197Description = fortezzaSignatureAlgorithm (2 16 840 1 101 2 1 1 2)
2198
2199OID = 06 09 60 86 48 01 65 02 01 01 03
2200Comment = DMS-SDN-702
2201Description = sdnsConfidentialityAlgorithm (2 16 840 1 101 2 1 1 3)
2202
2203OID = 06 09 60 86 48 01 65 02 01 01 04
2204Comment = DMS-SDN-702. Formerly known as mosaicConfidentialityAlgorithm
2205Description = fortezzaConfidentialityAlgorithm (2 16 840 1 101 2 1 1 4)
2206
2207OID = 06 09 60 86 48 01 65 02 01 01 05
2208Comment = DMS-SDN-702
2209Description = sdnsIntegrityAlgorithm (2 16 840 1 101 2 1 1 5)
2210
2211OID = 06 09 60 86 48 01 65 02 01 01 06
2212Comment = DMS-SDN-702. Formerly known as mosaicIntegrityAlgorithm
2213Description = fortezzaIntegrityAlgorithm (2 16 840 1 101 2 1 1 6)
2214
2215OID = 06 09 60 86 48 01 65 02 01 01 07
2216Comment = DMS-SDN-702
2217Description = sdnsTokenProtectionAlgorithm (2 16 840 1 101 2 1 1 7)
2218
2219OID = 06 09 60 86 48 01 65 02 01 01 08
2220Comment = DMS-SDN-702. Formerly know as mosaicTokenProtectionAlgorithm
2221Description = fortezzaTokenProtectionAlgorithm (2 16 840 1 101 2 1 1 8)
2222
2223OID = 06 09 60 86 48 01 65 02 01 01 09
2224Comment = DMS-SDN-702
2225Description = sdnsKeyManagementAlgorithm (2 16 840 1 101 2 1 1 9)
2226
2227OID = 06 09 60 86 48 01 65 02 01 01 0A
2228Comment = DMS-SDN-702. Formerly known as mosaicKeyManagementAlgorithm
2229Description = fortezzaKeyManagementAlgorithm (2 16 840 1 101 2 1 1 10)
2230
2231OID = 06 09 60 86 48 01 65 02 01 01 0B
2232Comment = DMS-SDN-702
2233Description = sdnsKMandSigAlgorithm (2 16 840 1 101 2 1 1 11)
2234
2235OID = 06 09 60 86 48 01 65 02 01 01 0C
2236Comment = DMS-SDN-702. Formerly known as mosaicKMandSigAlgorithm
2237Description = fortezzaKMandSigAlgorithm (2 16 840 1 101 2 1 1 12)
2238
2239OID = 06 09 60 86 48 01 65 02 01 01 0D
2240Comment = DMS-SDN-702
2241Description = SuiteASignatureAlgorithm (2 16 840 1 101 2 1 1 13)
2242
2243OID = 06 09 60 86 48 01 65 02 01 01 0E
2244Comment = DMS-SDN-702
2245Description = SuiteAConfidentialityAlgorithm (2 16 840 1 101 2 1 1 14)
2246
2247OID = 06 09 60 86 48 01 65 02 01 01 0F
2248Comment = DMS-SDN-702
2249Description = SuiteAIntegrityAlgorithm (2 16 840 1 101 2 1 1 15)
2250
2251OID = 06 09 60 86 48 01 65 02 01 01 10
2252Comment = DMS-SDN-702
2253Description = SuiteATokenProtectionAlgorithm (2 16 840 1 101 2 1 1 16)
2254
2255OID = 06 09 60 86 48 01 65 02 01 01 11
2256Comment = DMS-SDN-702
2257Description = SuiteAKeyManagementAlgorithm (2 16 840 1 101 2 1 1 17)
2258
2259OID = 06 09 60 86 48 01 65 02 01 01 12
2260Comment = DMS-SDN-702
2261Description = SuiteAKMandSigAlgorithm (2 16 840 1 101 2 1 1 18)
2262
2263OID = 06 09 60 86 48 01 65 02 01 01 13
2264Comment = DMS-SDN-702. Formerly known as mosaicUpdatedSigAlgorithm
2265Description = fortezzaUpdatedSigAlgorithm (2 16 840 1 101 2 1 1 19)
2266
2267OID = 06 09 60 86 48 01 65 02 01 01 14
2268Comment = DMS-SDN-702. Formerly known as mosaicKMandUpdSigAlgorithms
2269Description = fortezzaKMandUpdSigAlgorithms (2 16 840 1 101 2 1 1 20)
2270
2271OID = 06 09 60 86 48 01 65 02 01 01 15
2272Comment = DMS-SDN-702. Formerly known as mosaicUpdatedIntegAlgorithm
2273Description = fortezzaUpdatedIntegAlgorithm (2 16 840 1 101 2 1 1 21)
2274
2275OID = 06 09 60 86 48 01 65 02 01 01 16
2276Comment = DMS-SDN-702. Formerly known as mosaicKeyEncryptionAlgorithm
2277Description = keyExchangeAlgorithm (2 16 840 1 101 2 1 1 22)
2278
2279# CSOR (GAK-FIPS)
2280
2281OID = 06 07 60 86 48 01 65 03 01
2282Comment = CSOR GAK
2283Description = slabel (2 16 840 1 101 3 1)
2284Warning
2285
2286OID = 06 07 60 86 48 01 65 03 02
2287Comment = CSOR GAK
2288Description = pki (2 16 840 1 101 3 2)
2289Warning
2290
2291OID = 06 08 60 86 48 01 65 03 02 01
2292Comment = CSOR GAK policy
2293Description = GAK policyIdentifier (2 16 840 1 101 3 2 1)
2294Warning
2295
2296OID = 06 08 60 86 48 01 65 03 02 02
2297Comment = CSOR GAK extended key usage
2298Description = GAK (2 16 840 1 101 3 2 2)
2299Warning
2300
2301OID = 06 09 60 86 48 01 65 03 02 02 01
2302Comment = CSOR GAK extended key usage
2303Description = kRAKey (2 16 840 1 101 3 2 2 1)
2304Warning
2305
2306OID = 06 08 60 86 48 01 65 03 02 03
2307Comment = CSOR GAK extensions
2308Description = extensions (2 16 840 1 101 3 2 3)
2309Warning
2310
2311OID = 06 09 60 86 48 01 65 03 02 03 01
2312Comment = CSOR GAK extensions
2313Description = kRTechnique (2 16 840 1 101 3 2 3 1)
2314Warning
2315
2316OID = 06 09 60 86 48 01 65 03 02 03 02
2317Comment = CSOR GAK extensions
2318Description = kRecoveryCapable (2 16 840 1 101 3 2 3 2)
2319Warning
2320
2321OID = 06 09 60 86 48 01 65 03 02 03 03
2322Comment = CSOR GAK extensions
2323Description = kR (2 16 840 1 101 3 2 3 3)
2324Warning
2325
2326OID = 06 08 60 86 48 01 65 03 02 04
2327Comment = CSOR GAK
2328Description = keyrecoveryschemes (2 16 840 1 101 3 2 4)
2329Warning
2330
2331OID = 06 08 60 86 48 01 65 03 02 05
2332Comment = CSOR GAK
2333Description = krapola (2 16 840 1 101 3 2 5)
2334Warning
2335
2336OID = 06 07 60 86 48 01 65 03 03
2337Comment = CSOR GAK
2338Description = arpa (2 16 840 1 101 3 3)
2339Warning
2340
2341# Novell
2342
2343OID = 06 09 60 86 48 01 86 F8 37 01 09
2344Comment = Novell
2345Description = pki (2 16 840 1 113719 1 9)
2346
2347OID = 06 0A 60 86 48 01 86 F8 37 01 09 04
2348Comment = Novell PKI
2349Description = pkiAttributeType (2 16 840 1 113719 1 9 4)
2350
2351OID = 06 0B 60 86 48 01 86 F8 37 01 09 04 01
2352Comment = Novell PKI attribute type
2353Description = registeredAttributes (2 16 840 1 113719 1 9 4 1)
2354
2355OID = 06 0B 60 86 48 01 86 F8 37 01 09 04 02
2356Comment = Novell PKI attribute type
2357Description = relianceLimit (2 16 840 1 113719 1 9 4 2)
2358
2359# Netscape
2360
2361OID = 06 08 60 86 48 01 86 F8 42 01
2362Comment = Netscape
2363Description = cert-extension (2 16 840 1 113730 1)
2364
2365OID = 06 09 60 86 48 01 86 F8 42 01 01
2366Comment = Netscape certificate extension
2367Description = netscape-cert-type (2 16 840 1 113730 1 1)
2368
2369OID = 06 09 60 86 48 01 86 F8 42 01 02
2370Comment = Netscape certificate extension
2371Description = netscape-base-url (2 16 840 1 113730 1 2)
2372
2373OID = 06 09 60 86 48 01 86 F8 42 01 03
2374Comment = Netscape certificate extension
2375Description = netscape-revocation-url (2 16 840 1 113730 1 3)
2376
2377OID = 06 09 60 86 48 01 86 F8 42 01 04
2378Comment = Netscape certificate extension
2379Description = netscape-ca-revocation-url (2 16 840 1 113730 1 4)
2380
2381OID = 06 09 60 86 48 01 86 F8 42 02 05
2382Comment = Netscape certificate extension
2383Description = netscape-cert-sequence (2 16 840 1 113730 2 5)
2384
2385OID = 06 09 60 86 48 01 86 F8 42 02 06
2386Comment = Netscape certificate extension
2387Description = netscape-cert-url (2 16 840 1 113730 2 6)
2388
2389OID = 06 09 60 86 48 01 86 F8 42 01 07
2390Comment = Netscape certificate extension
2391Description = netscape-cert-renewal-url (2 16 840 1 113730 1 7)
2392
2393OID = 06 09 60 86 48 01 86 F8 42 01 08
2394Comment = Netscape certificate extension
2395Description = netscape-ca-policy-url (2 16 840 1 113730 1 8)
2396
2397OID = 06 09 60 86 48 01 86 F8 42 01 09
2398Comment = Netscape certificate extension
2399Description = HomePage-url (2 16 840 1 113730 1 9)
2400
2401OID = 06 09 60 86 48 01 86 F8 42 01 0A
2402Comment = Netscape certificate extension
2403Description = EntityLogo (2 16 840 1 113730 1 10)
2404
2405OID = 06 09 60 86 48 01 86 F8 42 01 0B
2406Comment = Netscape certificate extension
2407Description = UserPicture (2 16 840 1 113730 1 11)
2408
2409OID = 06 09 60 86 48 01 86 F8 42 01 0C
2410Comment = Netscape certificate extension
2411Description = netscape-ssl-server-name (2 16 840 1 113730 1 12)
2412
2413OID = 06 09 60 86 48 01 86 F8 42 01 0D
2414Comment = Netscape certificate extension
2415Description = netscape-comment (2 16 840 1 113730 1 13)
2416
2417OID = 06 08 60 86 48 01 86 F8 42 02
2418Comment = Netscape
2419Description = data-type (2 16 840 1 113730 2)
2420
2421OID = 06 09 60 86 48 01 86 F8 42 02 01
2422Comment = Netscape data type
2423Description = GIF (2 16 840 1 113730 2 1)
2424
2425OID = 06 09 60 86 48 01 86 F8 42 02 02
2426Comment = Netscape data type
2427Description = JPEG (2 16 840 1 113730 2 2)
2428
2429OID = 06 09 60 86 48 01 86 F8 42 02 03
2430Comment = Netscape data type
2431Description = URL (2 16 840 1 113730 2 3)
2432
2433OID = 06 09 60 86 48 01 86 F8 42 02 04
2434Comment = Netscape data type
2435Description = HTML (2 16 840 1 113730 2 4)
2436
2437OID = 06 09 60 86 48 01 86 F8 42 02 05
2438Comment = Netscape data type
2439Description = CertSeq (2 16 840 1 113730 2 5)
2440
2441OID = 06 08 60 86 48 01 86 F8 42 03
2442Comment = Netscape
2443Description = directory (2 16 840 1 113730 3)
2444
2445OID = 06 09 60 86 48 01 86 F8 42 03 01
2446Comment = Netscape directory
2447Description = ldapDefinitions (2 16 840 1 113730 3 1)
2448
2449OID = 06 0A 60 86 48 01 86 F8 42 03 01 01
2450Comment = Netscape LDAP definitions
2451Description = carLicense (2 16 840 1 113730 3 1 1)
2452
2453OID = 06 0A 60 86 48 01 86 F8 42 03 01 02
2454Comment = Netscape LDAP definitions
2455Description = departmentNumber (2 16 840 1 113730 3 1 2)
2456
2457OID = 06 0A 60 86 48 01 86 F8 42 03 01 03
2458Comment = Netscape LDAP definitions
2459Description = employeeNumber (2 16 840 1 113730 3 1 3)
2460
2461OID = 06 0A 60 86 48 01 86 F8 42 03 01 04
2462Comment = Netscape LDAP definitions
2463Description = employeeType (2 16 840 1 113730 3 1 4)
2464
2465OID = 06 0A 60 86 48 01 86 F8 42 03 02 02
2466Comment = Netscape LDAP definitions
2467Description = inetOrgPerson (2 16 840 1 113730 3 2 2)
2468
2469OID = 06 09 60 86 48 01 86 F8 42 04 01
2470Comment = Netscape
2471Description = serverGatedCrypto (2 16 840 1 113730 4 1)
2472
2473# Verisign
2474
2475OID = 06 0A 60 86 48 01 86 F8 45 01 06 03
2476Comment = Verisign
2477Description = Unknown Verisign extension (2 16 840 1 113733 1 6 3)
2478
2479OID = 06 0A 60 86 48 01 86 F8 45 01 06 06
2480Comment = Verisign
2481Description = Unknown Verisign extension (2 16 840 1 113733 1 6 6)
2482
2483OID = 06 0B 60 86 48 01 86 F8 45 01 07 01 01
2484Comment = Verisign
2485Description = Verisign certificatePolicy (2 16 840 1 113733 1 7 1 1)
2486
2487OID = 06 0C 60 86 48 01 86 F8 45 01 07 01 01 01
2488Comment = Verisign
2489Description = Unknown Verisign policy qualifier (2 16 840 1 113733 1 7 1 1 1)
2490
2491OID = 06 0C 60 86 48 01 86 F8 45 01 07 01 01 02
2492Comment = Verisign
2493Description = Unknown Verisign policy qualifier (2 16 840 1 113733 1 7 1 1 2)
2494
2495OID = 06 0A 60 86 48 01 86 F8 45 01 08 01
2496Comment = Verisign
2497Description = Verisign SGC CA? (2 16 840 1 113733 1 8 1)
2498
2499# SET
2500
2501OID = 06 03 67 2A 00
2502Comment = SET
2503Description = contentType (2 23 42 0)
2504
2505OID = 06 04 67 2A 00 00
2506Comment = SET contentType
2507Description = PANData (2 23 42 0 0)
2508
2509OID = 06 04 67 2A 00 01
2510Comment = SET contentType
2511Description = PANToken (2 23 42 0 1)
2512
2513OID = 06 04 67 2A 00 02
2514Comment = SET contentType
2515Description = PANOnly (2 23 42 0 2)
2516
2517# And on and on and on for another 80-odd OIDs which I'm not going to type in
2518
2519OID = 06 03 67 2A 01
2520Comment = SET
2521Description = msgExt (2 23 42 1)
2522
2523OID = 06 03 67 2A 02
2524Comment = SET
2525Description = field (2 23 42 2)
2526
2527OID = 06 04 67 2A 02 00
2528Comment = SET field
2529Description = fullName (2 23 42 2 0)
2530
2531OID = 06 04 67 2A 02 01
2532Comment = SET field
2533Description = givenName (2 23 42 2 1)
2534
2535OID = 06 04 67 2A 02 02
2536Comment = SET field
2537Description = familyName (2 23 42 2 2)
2538
2539OID = 06 04 67 2A 02 03
2540Comment = SET field
2541Description = birthFamilyName (2 23 42 2 3)
2542
2543OID = 06 04 67 2A 02 04
2544Comment = SET field
2545Description = placeName (2 23 42 2 4)
2546
2547OID = 06 04 67 2A 02 05
2548Comment = SET field
2549Description = identificationNumber (2 23 42 2 5)
2550
2551OID = 06 04 67 2A 02 06
2552Comment = SET field
2553Description = month (2 23 42 2 6)
2554
2555OID = 06 04 67 2A 02 07
2556Comment = SET field
2557Description = date (2 23 42 2 7)
2558
2559OID = 06 04 67 2A 02 08
2560Comment = SET field
2561Description = address (2 23 42 2 8)
2562
2563OID = 06 04 67 2A 02 09
2564Comment = SET field
2565Description = telephone (2 23 42 2 9)
2566
2567OID = 06 04 67 2A 02 0A
2568Comment = SET field
2569Description = amount (2 23 42 2 10)
2570
2571OID = 06 04 67 2A 02 0B
2572Comment = SET field
2573Description = accountNumber (2 23 42 2 7 11)
2574
2575OID = 06 04 67 2A 02 0C
2576Comment = SET field
2577Description = passPhrase (2 23 42 2 7 12)
2578
2579OID = 06 03 67 2A 03
2580Comment = SET
2581Description = attribute (2 23 42 3)
2582
2583OID = 06 04 67 2A 03 00
2584Comment = SET attribute
2585Description = cert (2 23 42 3 0)
2586
2587OID = 06 05 67 2A 03 00 00
2588Comment = SET cert attribute
2589Description = rootKeyThumb (2 23 42 3 0 0)
2590
2591OID = 06 05 67 2A 03 00 01
2592Comment = SET cert attribute
2593Description = additionalPolicy (2 23 42 3 0 1)
2594
2595OID = 06 03 67 2A 04
2596Comment = SET
2597Description = algorithm (2 23 42 4)
2598
2599OID = 06 03 67 2A 05
2600Comment = SET
2601Description = policy (2 23 42 5)
2602
2603OID = 06 04 67 2A 05 00
2604Comment = SET policy
2605Description = root (2 23 42 5 0)
2606
2607OID = 06 03 67 2A 06
2608Comment = SET
2609Description = module (2 23 42 6)
2610
2611OID = 06 03 67 2A 07
2612Comment = SET
2613Description = certExt (2 23 42 7)
2614
2615OID = 06 04 67 2A 07 00
2616Comment = SET cert extension
2617Description = hashedRootKey (2 23 42 7 0)
2618
2619OID = 06 04 67 2A 07 01
2620Comment = SET cert extension
2621Description = certificateType (2 23 42 7 1)
2622
2623OID = 06 04 67 2A 07 02
2624Comment = SET cert extension
2625Description = merchantData (2 23 42 7 2)
2626
2627OID = 06 04 67 2A 07 03
2628Comment = SET cert extension
2629Description = cardCertRequired (2 23 42 7 3)
2630
2631OID = 06 04 67 2A 07 04
2632Comment = SET cert extension
2633Description = tunneling (2 23 42 7 4)
2634
2635OID = 06 04 67 2A 07 05
2636Comment = SET cert extension
2637Description = setExtensions (2 23 42 7 5)
2638
2639OID = 06 04 67 2A 07 06
2640Comment = SET cert extension
2641Description = setQualifier (2 23 42 7 6)
2642
2643OID = 06 03 67 2A 08
2644Comment = SET
2645Description = brand (2 23 42 8)
2646
2647OID = 06 04 67 2A 08 01
2648Comment = SET brand
2649Description = IATA-ATA (2 23 42 8 1)
2650
2651OID = 06 04 67 2A 08 04
2652Comment = SET brand
2653Description = VISA (2 23 42 8 4)
2654
2655OID = 06 04 67 2A 08 05
2656Comment = SET brand
2657Description = MasterCard (2 23 42 8 5)
2658
2659OID = 06 04 67 2A 08 1E
2660Comment = SET brand
2661Description = Diners (2 23 42 8 30)
2662
2663OID = 06 04 67 2A 08 22
2664Comment = SET brand
2665Description = AmericanExpress (2 23 42 8 34)
2666
2667OID = 06 05 67 2A 08 AE 7B
2668Comment = SET brand
2669Description = Novus (2 23 42 8 6011)
2670
2671OID = 06 03 67 2A 09
2672Comment = SET
2673Description = vendor (2 23 42 9)
2674
2675OID = 06 04 67 2A 09 00
2676Comment = SET vendor
2677Description = GlobeSet (2 23 42 9 0)
2678
2679OID = 06 04 67 2A 09 01
2680Comment = SET vendor
2681Description = IBM (2 23 42 9 1)
2682
2683OID = 06 04 67 2A 09 02
2684Comment = SET vendor
2685Description = CyberCash (2 23 42 9 2)
2686
2687OID = 06 04 67 2A 09 03
2688Comment = SET vendor
2689Description = Terisa (2 23 42 9 3)
2690
2691OID = 06 04 67 2A 09 04
2692Comment = SET vendor
2693Description = RSADSI (2 23 42 9 4)
2694
2695OID = 06 04 67 2A 09 05
2696Comment = SET vendor
2697Description = VeriFone (2 23 42 9 5)
2698
2699OID = 06 04 67 2A 09 06
2700Comment = SET vendor
2701Description = TrinTech (2 23 42 9 6)
2702
2703OID = 06 04 67 2A 09 07
2704Comment = SET vendor
2705Description = BankGate (2 23 42 9 7)
2706
2707OID = 06 04 67 2A 09 08
2708Comment = SET vendor
2709Description = GTE (2 23 42 9 8)
2710
2711OID = 06 04 67 2A 09 09
2712Comment = SET vendor
2713Description = CompuSource (2 23 42 9 9)
2714
2715OID = 06 04 67 2A 09 0A
2716Comment = SET vendor
2717Description = Griffin (2 23 42 9 10)
2718
2719OID = 06 04 67 2A 09 0B
2720Comment = SET vendor
2721Description = Certicom (2 23 42 9 11)
2722
2723OID = 06 04 67 2A 09 0C
2724Comment = SET vendor
2725Description = OSS (2 23 42 9 12)
2726
2727OID = 06 04 67 2A 09 0D
2728Comment = SET vendor
2729Description = TenthMountain (2 23 42 9 13)
2730
2731OID = 06 04 67 2A 09 0E
2732Comment = SET vendor
2733Description = Antares (2 23 42 9 14)
2734
2735OID = 06 04 67 2A 09 0F
2736Comment = SET vendor
2737Description = ECC (2 23 42 9 15)
2738
2739OID = 06 04 67 2A 09 10
2740Comment = SET vendor
2741Description = Maithean (2 23 42 9 16)
2742
2743OID = 06 04 67 2A 09 11
2744Comment = SET vendor
2745Description = Netscape (2 23 42 9 17)
2746
2747OID = 06 04 67 2A 09 12
2748Comment = SET vendor
2749Description = Verisign (2 23 42 9 18)
2750
2751OID = 06 04 67 2A 09 13
2752Comment = SET vendor
2753Description = BlueMoney (2 23 42 9 19)
2754
2755OID = 06 04 67 2A 09 14
2756Comment = SET vendor
2757Description = Lacerte (2 23 42 9 20)
2758
2759OID = 06 04 67 2A 09 15
2760Comment = SET vendor
2761Description = Fujitsu (2 23 42 9 21)
2762
2763OID = 06 04 67 2A 09 16
2764Comment = SET vendor
2765Description = eLab (2 23 42 9 22)
2766
2767OID = 06 04 67 2A 09 17
2768Comment = SET vendor
2769Description = Entrust (2 23 42 9 23)
2770
2771OID = 06 04 67 2A 09 18
2772Comment = SET vendor
2773Description = VIAnet (2 23 42 9 24)
2774
2775OID = 06 04 67 2A 09 19
2776Comment = SET vendor
2777Description = III (2 23 42 9 25)
2778
2779OID = 06 04 67 2A 09 1A
2780Comment = SET vendor
2781Description = OpenMarket (2 23 42 9 26)
2782
2783OID = 06 04 67 2A 09 1B
2784Comment = SET vendor
2785Description = Lexem (2 23 42 9 27)
2786
2787OID = 06 04 67 2A 09 1C
2788Comment = SET vendor
2789Description = Intertrader (2 23 42 9 28)
2790
2791OID = 06 04 67 2A 09 1D
2792Comment = SET vendor
2793Description = Persimmon (2 23 42 9 29)
2794
2795OID = 06 04 67 2A 09 1E
2796Comment = SET vendor
2797Description = NABLE (2 23 42 9 30)
2798
2799OID = 06 04 67 2A 09 1F
2800Comment = SET vendor
2801Description = espace-net (2 23 42 9 31)
2802
2803OID = 06 04 67 2A 09 20
2804Comment = SET vendor
2805Description = Hitachi (2 23 42 9 32)
2806
2807OID = 06 04 67 2A 09 21
2808Comment = SET vendor
2809Description = Microsoft (2 23 42 9 33)
2810
2811OID = 06 04 67 2A 09 22
2812Comment = SET vendor
2813Description = NEC (2 23 42 9 34)
2814
2815OID = 06 04 67 2A 09 23
2816Comment = SET vendor
2817Description = Mitsubishi (2 23 42 9 35)
2818
2819OID = 06 04 67 2A 09 24
2820Comment = SET vendor
2821Description = NCR (2 23 42 9 36)
2822
2823OID = 06 04 67 2A 09 25
2824Comment = SET vendor
2825Description = e-COMM (2 23 42 9 37)
2826
2827OID = 06 04 67 2A 09 26
2828Comment = SET vendor
2829Description = Gemplus (2 23 42 9 38)
2830
2831OID = 06 03 67 2A 0A
2832Comment = SET
2833Description = national (2 23 42 10)
2834
2835OID = 06 05 67 2A 0A 81 40
2836Comment = SET national
2837Description = Japan (2 23 42 10 192)
2838
2839# Draft SET. These were invented for testing in pre-1.0 drafts, but have
2840# been used nonetheless by implementors
2841
2842OID = 06 04 86 8D 6F 02
2843Comment = SET. Deprecated, use (2 23 42 7 0) instead
2844Description = hashedRootKey (2 54 1775 2)
2845Warning
2846
2847OID = 06 04 86 8D 6F 03
2848Comment = SET. Deprecated, use (2 23 42 7 0) instead
2849Description = certificateType (2 54 1775 3)
2850Warning
2851
2852OID = 06 04 86 8D 6F 04
2853Comment = SET. Deprecated, use (2 23 42 7 0) instead
2854Description = merchantData (2 54 1775 4)
2855Warning
2856
2857OID = 06 04 86 8D 6F 05
2858Comment = SET. Deprecated, use (2 23 42 7 0) instead
2859Description = cardCertRequired (2 54 1775 5)
2860Warning
2861
2862OID = 06 04 86 8D 6F 06
2863Comment = SET. Deprecated, use (2 23 42 7 0) instead
2864Description = tunneling (2 54 1775 6)
2865Warning
2866
2867OID = 06 04 86 8D 6F 07
2868Comment = SET. Deprecated, use (2 23 42 7 0) instead
2869Description = setQualifier (2 54 1775 7)
2870Warning
2871
2872OID = 06 04 86 8D 6F 63
2873Comment = SET. Deprecated, use (2 23 42 7 0) instead
2874Description = set-data (2 54 1775 99)
2875Warning
2876
2877# Apple
2878
2879OID = 06 06 2A 86 48 86 F7 63
2880Comment = Apple Computer, Inc.
2881Description = apple (1 2 840 113635)
2882
2883OID = 6 07 2A 86 48 86 F7 63 64
2884Comment = Apple Data Security
2885Description = appleDataSecurity (1 2 840 113635 100)
2886
2887OID = 06 08 2A 86 48 86 F7 63 64 01
2888Comment = Apple Trust Policy
2889Description = appleTrustPolicy (1 2 840 113635 100 1)
2890
2891OID = 06 08 2A 86 48 86 F7 63 64 02
2892Comment = Apple Security Algorithms
2893Description = appleSecurityAlgorithm (1 2 840 113635 100 2)
2894
2895OID = 06 09 2A 86 48 86 F7 63 64 02 01
2896Comment = Apple FEE
2897Description = fee (1 2 840 113635 100 2 1)
2898
2899OID = 06 09 2A 86 48 86 F7 63 64 02 02
2900Comment = Apple ASC
2901Description = asc (1 2 840 113635 100 2 2)
2902
2903OID = 06 09 2A 86 48 86 F7 63 64 02 03
2904Comment = Apple FEE/MD5 signature
2905Description = feeMD5 (1 2 840 113635 100 2 3)
2906
2907OID = 06 09 2A 86 48 86 F7 63 64 02 04
2908Comment = Apple FEE/SHA1 signature
2909Description = feeSHA1 (1 2 840 113635 100 2 4)
2910
2911OID = 06 09 2A 86 48 86 F7 63 64 02 05
2912Comment = Apple FEED encryption
2913Description = appleFeed (1 2 840 113635 100 2 5)
2914
2915OID = 06 09 2A 86 48 86 F7 63 64 02 06
2916Comment = Apple FEEDExp signature
2917Description = appleFeedExp (1 2 840 113635 100 2 6)
2918
2919OID = 06 09 2A 86 48 86 F7 63 64 02 07
2920Comment = Apple FEE/ECDSA signature
2921Description = feeECDSA (1 2 840 113635 100 2 7)
2922
2923OID = 06 08 2A 86 48 86 F7 63 64 03
2924Comment = Apple .Mac Certificate arc
2925Description = appleDotMacCertificate (OID 1 2 840 113635 100 3)
2926
2927OID = 06 09 2A 86 48 86 F7 63 64 03 02
2928Comment = Apple .Mac Certificate Extension arc
2929Description = dotMacCertificateExtension (OID 1 2 840 113635 100 3 2)
2930
2931OID = 06 0A 2A 86 48 86 F7 63 64 03 02 01
2932Comment = Apple .Mac Certificate Identity Extension
2933Description = dotMacCertExtensionIdentity (OID 1 2 840 113635 100 3 2 1)
2934
2935OID = 06 0A 2A 86 48 86 F7 63 64 03 02 02
2936Comment = Apple .Mac Certificate Email Sign Extension
2937Description = dotMacCertExtensionEmailSign (OID 1 2 840 113635 100 3 2 2)
2938
2939OID = 06 0A 2A 86 48 86 F7 63 64 03 02 03
2940Comment = Apple .Mac Certificate Email Encrypt Extension
2941Description = dotMacCertExtensionEmailEncrypt (OID 1 2 840 113635 100 3 2 3)
2942
2943OID = 06 08 2A 86 48 86 F7 63 64 04
2944Comment = Apple Extended Key Usage arc
2945Description = appleExtendedKeyUsage (OID 1 2 840 113635 100 4)
2946
2947OID = 06 09 2A 86 48 86 F7 63 64 04 01
2948Comment = Apple Code Signing Extended Key Usage
2949Description = appleCodeSigning (OID 1 2 840 113635 100 4 1)
2950
2951OID = 06 0A 2A 86 48 86 F7 63 64 04 01 02
2952Comment = Apple Software Update Signing Extended Key Usage
2953Description = appleSoftwareUpdateSigning (OID 1 2 840 113635 100 4 1 2)
2954
2955OID = 06 0A 2A 86 48 86 F7 63 64 04 01 03
2956Comment = Apple Third Party Code Signing Extended Key Usage
2957Description = appleThirdPartyCodeSigning (OID 1 2 840 113635 100 4 1 3)
2958
2959OID = 06 0A 2A 86 48 86 F7 63 64 04 01 04
2960Comment = Apple Resource Signing Extended Key Usage
2961Description = appleResourceSigning (OID 1 2 840 113635 100 4 1 4)
2962
2963OID = 06 0A 2A 86 48 86 F7 63 64 04 01 01
2964Comment = Apple Code Signing DEVELOPMENT Extended Key Usage
2965Description = appleCodeSigningDevelopment (OID 1 2 840 113635 100 4 1 1)
2966
2967OID = 06 09 2A 86 48 86 F7 63 64 04 02
2968Comment = Apple iChat Signing Extended Key Usage
2969Description = appleiChatSigning (OID 1 2 840 113635 100 4 2)
2970
2971OID = 06 09 2A 86 48 86 F7 63 64 04 03
2972Comment = Apple Code Signing Extended Key Usage
2973Description = appleiChatEncryption (OID 1 2 840 113635 100 4 3)
2974
2975OID = 06 09 2A 86 48 86 F7 63 64 04 04
2976Comment = Apple System Identity Extended Key Usage
2977Description = appleSystemIdentity (OID 1 2 840 113635 100 4 4)
2978
2979OID = 06 08 2A 86 48 86 F7 63 64 05
2980Comment = Apple Certificate Policy arc
2981Description = Apple Certificate Policy arc (OID 1 2 840 113635 100 5)
2982
2983OID = 06 09 2A 86 48 86 F7 63 64 05 01
2984Comment = Apple Certificate Policy
2985Description = Apple Certificate Policy (OID 1 2 840 113635 100 5 1)
2986
2987OID = 06 09 2A 86 48 86 F7 63 64 05 02
2988Comment = Apple .Mac Certificate Policy
2989Description = Apple .Mac Certificate Policy (OID 1 2 840 113635 100 5 2)
2990
2991# Extended key usage
2992OID = 06 04 55 1D 25 03
2993Comment = Code Signing
2994Description = id-kp-codeSigning (OID 2 5 29 37 3)
2995
2996# Intel's CDSA-specific SHA1withECDSA
2997OID = 06 0B 60 86 48 01 86 F8 4D 02 02 05 51
2998Comment = CDSA SHA1 with ECDSA
2999Description = sha1WithECDSA (OID 2 16 840 1 113741 2 2 5 81)
3000
3001# Microsoft Cert Authority Renewal Version
3002OID = 06 09 2B 06 01 04 01 82 37 15 01
3003Comment = Microsoft Cert Authority Renewal Version
3004Description = certSrv-ca-version (OID 1 3 6 1 4 1 311 21 1)
3005
3006# Fictitious US DOD CRL entry extension
3007OID = 06 09 60 86 48 01 65 02 01 0C 02
3008Comment = Fictitious US DOD CRL entry extension
3009Description = id-test-extension (OID 2 16 840 1 101 2 1 12 2)
3010
3011# Microsoft Kerberos
3012OID = 06 09 2A 86 48 82 F7 12 01 02 02
3013Comment = Microsoft SPNEGO/Kerberos
3014Description = microsoft-kerberos (OID 1 2 840 48018 1 2 2)
3015
3016# Kerberos V5
3017OID = 06 09 2A 86 48 86 F7 12 01 02 02
3018Comment = Kerberos V5
3019Description = kerberos-v5 (OID 1 2 840 113554 1 2 2)
3020
3021# IANA SPNEGO, RFC 2478
3022OID = 06 06 2B 06 01 05 05 02
3023Comment = IANA SPNEGO
3024Description = spnego (OID 1 3 6 1 5 5 2)
3025
3026# MIT user-to-user kerberos
3027OID = 06 0A 2A 86 48 86 F7 12 01 02 02 03
3028Comment = MIT User-to-user Kerberos
3029Description = user-to-user-kerberos (OID 1.2.840.113554.1.2.2.3)
3030
3031OID = 06 0A 2B 06 01 04 01 82 37 02 02 0A
3032Comment = Microsoft NTLMSSP
3033Description = ntlmssp (OID 1.3.6.1.4.1.311.2.2.10)
3034
3035# AES base
3036OID = 06 08 60 86 48 01 65 03 04 01
3037Comment = aes
3038Description = aes (OID 2 16 840 1 101 3 4 1)
3039
3040# AES, 128 bit key
3041OID = 06 09 60 86 48 01 65 03 04 01 01
3042Comment = id-aes128-ECB
3043Description = id-aes128-ECB (OID 2 16 840 1 101 3 4 1 1)
3044
3045OID = 06 09 60 86 48 01 65 03 04 01 02
3046Comment = id-aes128-CBC
3047Description = id-aes128-CBC (OID 2 16 840 1 101 3 4 1 2)
3048
3049OID = 06 09 60 86 48 01 65 03 04 01 03
3050Comment = id-aes128-OFB
3051Description = id-aes128-OFB (OID 2 16 840 1 101 3 4 1 3)
3052
3053OID = 06 09 60 86 48 01 65 03 04 01 04
3054Comment = id-aes128-CFB
3055Description = id-aes128-CFB (OID 2 16 840 1 101 3 4 1 4)
3056
3057# AES, 192 bit key
3058OID = 06 09 60 86 48 01 65 03 04 01 15
3059Comment = id-aes192-ECB
3060Description = id-aes192-ECB (OID 2 16 840 1 101 3 4 1 21)
3061
3062OID = 06 09 60 86 48 01 65 03 04 01 16
3063Comment = id-aes192-CBC
3064Description = id-aes192-CBC (OID 2 16 840 1 101 3 4 1 22)
3065
3066OID = 06 09 60 86 48 01 65 03 04 01 17
3067Comment = id-aes192-OFB
3068Description = id-aes192-OFB (OID 2 16 840 1 101 3 4 1 23)
3069
3070OID = 06 09 60 86 48 01 65 03 04 01 18
3071Comment = id-aes192-CFB
3072Description = id-aes192-CFB (OID 2 16 840 1 101 3 4 1 24)
3073
3074# AES, 256 bit key
3075OID = 06 09 60 86 48 01 65 03 04 01 29
3076Comment = id-aes256-ECB
3077Description = id-aes256-ECB (OID 2 16 840 1 101 3 4 1 41)
3078
3079OID = 06 09 60 86 48 01 65 03 04 01 2A
3080Comment = id-aes256-CBC
3081Description = id-aes256-CBC (OID 2 16 840 1 101 3 4 1 42)
3082
3083OID = 06 09 60 86 48 01 65 03 04 01 2B
3084Comment = id-aes256-OFB
3085Description = id-aes256-OFB (OID 2 16 840 1 101 3 4 1 43)
3086
3087OID = 06 09 60 86 48 01 65 03 04 01 2C
3088Comment = id-aes256-CFB
3089Description = id-aes256-CFB (OID 2 16 840 1 101 3 4 1 44)
3090
3091OID = 06 08 2B 06 01 04 01 82 37 14
3092Comment = Microsoft Enrollment Infrastructure
3093Description = MicrosoftEnrollmentInfrastructure (OID 1 3 6 1 4 1 311 20)
3094
3095OID = 06 09 2B 06 01 04 01 82 37 14 01
3096Comment = Auto-Enroll CTL Usage
3097Description = msCtlUsage (OID 1 3 6 1 4 1 311 20 1)
3098
3099OID = 06 09 2B 06 01 04 01 82 37 14 02
3100Comment = Enrollment Certificate Type
3101Description = msCertType (OID 1 3 6 1 4 1 311 20 2)
3102
3103OID = 06 0A 2B 06 01 04 01 82 37 14 02 01
3104Comment = Enrollment Agent
3105Description = msEnrollmentAgent (OID 1 3 6 1 4 1 311 20 2 1)
3106
3107OID = 06 0A 2B 06 01 04 01 82 37 14 02 02
3108Comment = Smartcard Logon
3109Description = msSmartCardLogon (OID 1 3 6 1 4 1 311 20 2 2)
3110
3111OID = 06 0A 2B 06 01 04 01 82 37 14 02 03
3112Comment = NT Principal Name
3113Description = NTPrincipalName (OID 1 3 6 1 4 1 311 20 2 3)
3114
3115OID = 06 08 2B 06 01 05 05 07 01 03
3116Comment = Qualified Certificate Statements
3117Description = id-pe-qcStatements (OID 1 3 6 1 5 5 7 1 3)
3118
3119OID = 06 07 2B 06 01 05 05 07 0B
3120Comment = Qualified Certificate Statements
3121Description = id-qcs (OID 1 3 6 1 5 5 7 11)
3122
3123# addenda for Qualified Cert Statements
3124
3125OID = 06 07 2B 06 01 05 05 07 01
3126Comment = Qualified Certificate Statements
3127Description = id-pe (OID 1 3 6 1 5 5 7 1)
3128
3129OID = 06 07 2B 06 01 05 05 07 09
3130Comment = Personal Data Attributes
3131Description = id-pda (OID 1 3 6 1 5 5 7 9)
3132
3133OID = 06 08 2B 06 01 05 05 07 09
3134Comment = Personal Data Attributes
3135Description = id-pda-dateOfBirth (OID 1 3 6 1 5 5 7 9 1)
3136
3137OID = 06 08 2B 06 01 05 05 07 09
3138Comment = Personal Data Attributes
3139Description = id-pda-placeOfBirth (OID 1 3 6 1 5 5 7 9 2)
3140
3141OID = 06 08 2B 06 01 05 05 07 09
3142Comment = Personal Data Attributes
3143Description = id-pda-gender (OID 1 3 6 1 5 5 7 9 3)
3144
3145OID = 06 08 2B 06 01 05 05 07 09
3146Comment = Personal Data Attributes
3147Description = id-pda-countryOfCitizenship (OID 1 3 6 1 5 5 7 9 4)
3148
3149OID = 06 08 2B 06 01 05 05 07 09
3150Comment = Personal Data Attributes
3151Description = id-pda-countryOfResidence (OID 1 3 6 1 5 5 7 9 5)
3152
3153OID = 06 08 2B 06 01 05 05 07 0B 01
3154Comment = Qualified Certificate Statement QCSyntax-v1
3155Description = id-qcs-pkixQCSyntax-v1 (OID 1 3 6 1 5 5 7 11 1)
3156
3157OID = 06 08 2B 06 01 05 05 07 0B 02
3158Comment = Qualified Certificate Statement QCSyntax-v2
3159Description = id-qcs-pkixQCSyntax-v2 (OID 1 3 6 1 5 5 7 11 2)
3160
3161# end Qualified Cert Statements addenda
3162
3163OID = 06 06 04 00 8E 46 01 01
3164Comment = qcs QcCompliance
3165Description = id-etsi-qcs-QcCompliance (OID 0 4 0 1862 1 1)
3166
3167OID = 06 09 60 86 48 01 65 03 04 02 04
3168Comment = SHA224
3169Description = id-sha224 (OID 2 16 840 1 101 3 4 2 4
3170
3171OID = 06 09 60 86 48 01 65 03 04 02 01
3172Comment = SHA256
3173Description = id-sha256 (OID 2 16 840 1 101 3 4 2 1
3174
3175OID = 06 09 60 86 48 01 65 03 04 02 02
3176Comment = SHA384
3177Description = id-sha384 (OID 2 16 840 1 101 3 4 2 2
3178
3179OID = 06 09 60 86 48 01 65 03 04 02 03
3180Comment = SHA512
3181Description = id-sha512 (OID 2 16 840 1 101 3 4 2 3
3182
3183OID = 06 09 2A 86 48 86 F7 0D 01 01 0E
3184Comment = PKCS #1
3185Description = sha224WithRSAEncryption (1 2 840 113549 1 1 14)
3186
3187OID = 06 09 2A 86 48 86 F7 0D 01 01 0B
3188Comment = PKCS #1
3189Description = sha256WithRSAEncryption (1 2 840 113549 1 1 11)
3190
3191OID = 06 09 2A 86 48 86 F7 0D 01 01 0C
3192Comment = PKCS #1
3193Description = sha384WithRSAEncryption (1 2 840 113549 1 1 12)
3194
3195OID = 06 09 2A 86 48 86 F7 0D 01 01 0D
3196Comment = PKCS #1
3197Description = sha512WithRSAEncryption (1 2 840 113549 1 1 13)
3198
3199OID = 06 09 2A 86 48 86 F7 0D 01 01 06
3200Comment = PKCS #1
3201Description = rsaEncryptionWithOAEPPaddingSET (1 2 840 113549 1 1 6)
3202
3203OID = 06 09 2A 86 48 86 F7 0D 01 01 07
3204Comment = PKCS #1
3205Description = rsaEncryptionWithOAEPPadding (1 2 840 113549 1 1 7)
3206
3207OID = 06 09 2A 86 48 86 F7 0D 01 01 09
3208Comment = PKCS #1
3209Description = id-pSpecified (1 2 840 113549 1 1 9)
3210
3211OID = 06 09 2A 86 48 86 F7 0D 01 01 0A
3212Comment = PKCS #1
3213Description = id-RSASSA-PSS (1 2 840 113549 1 1 10)
3214
3215# TP policy OIDS
3216OID = 06 09 2A 86 48 86 F7 63 64 01 01
3217Comment = Apple iSign
3218Description = iSignTP (1 2 840 113635 100 1 1)
3219
3220OID = 06 09 2A 86 48 86 F7 63 64 01 02
3221Comment = Apple Basic X509 TP
3222Description = Apple Basic X509 TP (1 2 840 113635 100 1 2)
3223
3224OID = 06 09 2A 86 48 86 F7 63 64 01 03
3225Comment = Apple TP
3226Description = Apple SSL TP (1 2 840 113635 100 1 3)
3227
3228OID = 06 09 2A 86 48 86 F7 63 64 01 06
3229Comment = Apple TP
3230Description = Apple CRL TP (1 2 840 113635 100 1 6)
3231
3232OID = 06 09 2A 86 48 86 F7 63 64 01 07
3233Comment = Apple TP
3234Description = Apple OCSP TP (1 2 840 113635 100 1 7)
3235
3236OID = 06 09 2A 86 48 86 F7 63 64 01 08
3237Comment = Apple TP
3238Description = Apple SMIME TP (1 2 840 113635 100 1 8)
3239
3240OID = 06 09 2A 86 48 86 F7 63 64 01 09
3241Comment = Apple TP
3242Description = Apple EAP TP (1 2 840 113635 100 1 9)
3243
3244OID = 06 09 2A 86 48 86 F7 63 64 01 0A
3245Comment = Apple TP
3246Description = Apple SW Update Signing TP (1 2 840 113635 100 1 10)
3247
3248OID = 06 09 2A 86 48 86 F7 63 64 01 0B
3249Comment = Apple TP
3250Description = Apple IPSec TP (1 2 840 113635 100 1 11)
3251
3252OID = 06 09 2A 86 48 86 F7 63 64 01 0C
3253Comment = Apple TP
3254Description = Apple iChat TP (1 2 840 113635 100 1 12)
3255
3256OID = 06 09 2A 86 48 86 F7 63 64 01 0D
3257Comment = Apple TP
3258Description = Apple Resource Signing TP (1 2 840 113635 100 1 13)
3259
3260OID = 06 09 2A 86 48 86 F7 63 64 01 0E
3261Comment = Apple TP
3262Description = Apple Kerberos PKINIT Client TP (1 2 840 113635 100 1 14)
3263
3264OID = 06 09 2A 86 48 86 F7 63 64 01 0F
3265Comment = Apple TP
3266Description = Apple Kerberos PKINIT Server TP (1 2 840 113635 100 1 15)
3267
3268OID = 06 09 2A 86 48 86 F7 63 64 01 10
3269Comment = Apple TP
3270Description = Apple Code Signing TP (1 2 840 113635 100 1 16)
3271
3272# Kerberos/PKINIT
3273OID = 06 07 2B 06 01 05 02 03 01
3274Comment = Kerberos/PKINIT
3275Description = id-pkinit-authData (1 3 6 1 5 2 3 1)
3276
3277OID = 06 07 2B 06 01 05 02 03 02
3278Comment = Kerberos/PKINIT
3279Description = id-pkinit-DHKeyData (1 3 6 1 5 2 3 2)
3280
3281OID = 06 07 2B 06 01 05 02 03 03
3282Comment = Kerberos/PKINIT
3283Description = id-pkinit-rkeyData (1 3 6 1 5 2 3 3)
3284
3285OID = 06 07 2B 06 01 05 02 03 04
3286Comment = Kerberos/PKINIT
3287Description = id-pkinit-KPClientAuth (1 3 6 1 5 2 3 4)
3288
3289OID = 06 07 2B 06 01 05 02 03 05
3290Comment = Kerberos/PKINIT
3291Description = id-pkinit-KPKdc (1 3 6 1 5 2 3 5)
3292
3293# S/MIME signed attributes
3294OID = 06 0B 2A 86 48 86 F7 0D 01 09 10 02 0B
3295Comment = EncryptionKeyPreference
3296Description = Encryption Key Preference (1 2 840 113549 1 9 16 2 11)
3297
3298OID = 06 09 2B 06 01 04 01 82 37 10 04
3299Comment = EncryptionKeyPreference, MS
3300Description = Encryption Key Preference, MS version (1 3 6 1 4 1 311 16 4)
3301
3302OID = 06 09 2A 86 48 86 F7 0D 01 09 05
3303Comment = S/MIME Signing Time
3304Description = S/MIME Signing Time (1 2 840 113549 1 9 5)
3305
3306OID = 06 09 2A 86 48 86 F7 63 64 01 0E
3307Comment = Apple PKINIT Client Policy
3308Description = Apple PKINIT Client Policy ( 1.2.840.113635.100.1.14 )
3309
3310OID = 06 09 2A 86 48 86 F7 63 64 01 0F
3311Comment = Apple PKINIT Server Policy
3312Description = Apple PKINIT Server Policy ( 1.2.840.113635.100.1.15 )
3313
3314# More ANSI X9.62
3315
3316OID = 06 06 2A 86 48 CE 3D 03
3317Comment = ANSI X9.62
3318Description = ellipticCurve (1 2 840 10045 3)
3319
3320OID = 06 07 2A 86 48 CE 3D 03 00
3321Comment = ANSI X9.62
3322Description = c-TwoCurve (1 2 840 10045 3 0)
3323
3324OID = 06 07 2A 86 48 CE 3D 03 01
3325Comment = ANSI X9.62
3326Description = primeCurve (1 2 840 10045 3 1)
3327
3328OID = 06 08 2A 86 48 CE 3D 03 00 01
3329Comment = ANSI X9.62
3330Description = c2pnb163v1 (1 2 840 10045 3 0 1)
3331
3332OID = 06 08 2A 86 48 CE 3D 03 00 02
3333Comment = ANSI X9.62
3334Description = c2pnb163v2 (1 2 840 10045 3 0 2)
3335
3336OID = 06 08 2A 86 48 CE 3D 03 00 03
3337Comment = ANSI X9.62
3338Description = c2pnb163v3 (1 2 840 10045 3 0 3)
3339
3340OID = 06 08 2A 86 48 CE 3D 03 00 04
3341Comment = ANSI X9.62
3342Description = c2pnb176w1 (1 2 840 10045 3 0 4)
3343
3344OID = 06 08 2A 86 48 CE 3D 03 00 05
3345Comment = ANSI X9.62
3346Description = c2tnb191v1 (1 2 840 10045 3 0 5)
3347
3348OID = 06 08 2A 86 48 CE 3D 03 00 06
3349Comment = ANSI X9.62
3350Description = c2tnb191v2 (1 2 840 10045 3 0 6)
3351
3352OID = 06 08 2A 86 48 CE 3D 03 00 07
3353Comment = ANSI X9.62
3354Description = c2tnb191v3 (1 2 840 10045 3 0 7)
3355
3356OID = 06 08 2A 86 48 CE 3D 03 00 08
3357Comment = ANSI X9.62
3358Description = c2onb191v4 (1 2 840 10045 3 0 8)
3359
3360OID = 06 08 2A 86 48 CE 3D 03 00 09
3361Comment = ANSI X9.62
3362Description = c2onb191v5 (1 2 840 10045 3 0 9)
3363
3364OID = 06 08 2A 86 48 CE 3D 03 00 0A
3365Comment = ANSI X9.62
3366Description = c2pnb208w1 (1 2 840 10045 3 0 10)
3367
3368OID = 06 08 2A 86 48 CE 3D 03 00 0B
3369Comment = ANSI X9.62
3370Description = c2tnb239v1 (1 2 840 10045 3 0 11)
3371
3372OID = 06 08 2A 86 48 CE 3D 03 00 0C
3373Comment = ANSI X9.62
3374Description = c2tnb239v2 (1 2 840 10045 3 0 12)
3375
3376OID = 06 08 2A 86 48 CE 3D 03 00 0D
3377Comment = ANSI X9.62
3378Description = c2tnb239v3 (1 2 840 10045 3 0 13)
3379
3380OID = 06 08 2A 86 48 CE 3D 03 00 0E
3381Comment = ANSI X9.62
3382Description = c2onb239v4 (1 2 840 10045 3 0 14)
3383
3384OID = 06 08 2A 86 48 CE 3D 03 00 0F
3385Comment = ANSI X9.62
3386Description = c2onb239v5 (1 2 840 10045 3 0 15)
3387
3388OID = 06 08 2A 86 48 CE 3D 03 00 10
3389Comment = ANSI X9.62
3390Description = c2pnb272w1 (1 2 840 10045 3 0 16)
3391
3392OID = 06 08 2A 86 48 CE 3D 03 00 11
3393Comment = ANSI X9.62
3394Description = c2pnb304w1 (1 2 840 10045 3 0 17)
3395
3396OID = 06 08 2A 86 48 CE 3D 03 00 12
3397Comment = ANSI X9.62
3398Description = c2tnb359v1 (1 2 840 10045 3 0 18)
3399
3400OID = 06 08 2A 86 48 CE 3D 03 00 13
3401Comment = ANSI X9.62
3402Description = c2pnb368w1 (1 2 840 10045 3 0 19)
3403
3404OID = 06 08 2A 86 48 CE 3D 03 00 14
3405Comment = ANSI X9.62
3406Description = c2tnb431r1 (1 2 840 10045 3 0 20)
3407
3408# this one renamed from prime192v1 (in X9.62) to secp192r1
3409# (Certicom SEC 2)
3410OID = 06 08 2A 86 48 CE 3D 03 01 01
3411Comment = ANSI X9.62
3412Description = secp192r1 (1 2 840 10045 3 1 1)
3413
3414OID = 06 08 2A 86 48 CE 3D 03 01 02
3415Comment = ANSI X9.62
3416Description = prime192v2 (1 2 840 10045 3 1 2)
3417
3418OID = 06 08 2A 86 48 CE 3D 03 01 03
3419Comment = ANSI X9.62
3420Description = prime192v3 (1 2 840 10045 3 1 3)
3421
3422OID = 06 08 2A 86 48 CE 3D 03 01 04
3423Comment = ANSI X9.62
3424Description = prime239v1 (1 2 840 10045 3 1 4)
3425
3426OID = 06 08 2A 86 48 CE 3D 03 01 05
3427Comment = ANSI X9.62
3428Description = prime239v2 (1 2 840 10045 3 1 5)
3429
3430OID = 06 08 2A 86 48 CE 3D 03 01 06
3431Comment = ANSI X9.62
3432Description = prime239v3 (1 2 840 10045 3 1 6)
3433
3434# X9.62: prime256v1 Certicom SEC 2:
3435OID = 06 08 2A 86 48 CE 3D 03 01 07
3436Comment = ANSI X9.62
3437Description = secp256r1 (1 2 840 10045 3 1 7)
3438
3439OID = 06 06 2A 86 48 CE 3D 04
3440Comment = ANSI X9.62
3441Description = ecSigType (1 2 840 10045 4)
3442
3443OID = 06 07 2A 86 48 CE 3D 04 01
3444Comment = ANSI X9.62
3445Description = ecdsa-with-SHA1 (1 2 840 10045 4 1)
3446
3447OID = 06 08 2A 86 48 CE 3D 04 03 01
3448Comment = FPKI
3449Description = ecdsa-with-SHA224 (1 2 840 10045 4 3 1)
3450
3451OID = 06 08 2A 86 48 CE 3D 04 03 02
3452Comment = FPKI
3453Description = ecdsa-with-SHA256 (1 2 840 10045 4 3 2)
3454
3455OID = 06 08 2A 86 48 CE 3D 04 03 03
3456Comment = FPKI
3457Description = ecdsa-with-SHA384 (1 2 840 10045 4 3 3)
3458
3459OID = 06 08 2A 86 48 CE 3D 04 03 04
3460Comment = FPKI
3461Description = ecdsa-with-SHA512 (1 2 840 10045 4 3 4)
3462
3463#
3464# This one is used when the disgest algorithm is explicitly
3465# specified in a separate alg parameter
3466#
3467OID = 06 07 2A 86 48 CE 3D 04 03
3468Comment = FPKI
3469Description = ecdsa-with-specified (1 2 840 10045 4 3)
3470
3471#
3472# Certicom Elliptic Curves from SEC 2
3473#
3474OID = 06 03 2B 81 04
3475Comment = Certicom SEC 2
3476Description = certicom-arc (1 3 132)
3477
3478OID = 06 04 2B 81 04 00
3479Comment = Certicom SEC 2
3480Description = ellipticCurve (1 3 132 0)
3481
3482OID = 06 05 2B 81 04 00 06
3483Comment = Certicom SEC 2
3484Description = secp112r1 (1 3 132 0 6)
3485
3486OID = 06 05 2B 81 04 00 07
3487Comment = Certicom SEC 2
3488Description = secp112r2 (1 3 132 0 7)
3489
3490OID = 06 05 2B 81 04 00 1C
3491Comment = Certicom SEC 2
3492Description = secp128r1 (1 3 132 0 28)
3493
3494OID = 06 05 2B 81 04 00 1D
3495Comment = Certicom SEC 2
3496Description = secp128r2 (1 3 132 0 29)
3497
3498OID = 06 05 2B 81 04 00 09
3499Comment = Certicom SEC 2
3500Description = secp160k1 (1 3 132 0 9)
3501
3502OID = 06 05 2B 81 04 00 08
3503Comment = Certicom SEC 2
3504Description = secp160r1 (1 3 132 0 8)
3505
3506OID = 06 05 2B 81 04 00 1E
3507Comment = Certicom SEC 2
3508Description = secp160r2 (1 3 132 0 30)
3509
3510OID = 06 05 2B 81 04 00 1F
3511Comment = Certicom SEC 2
3512Description = secp192k1 (1 3 132 0 31)
3513
3514# note secp192r1 defined above in the ANSI X9.62 arc
3515
3516OID = 06 05 2B 81 04 00 20
3517Comment = Certicom SEC 2
3518Description = secp224k1 (1 3 132 0 32)
3519
3520OID = 06 05 2B 81 04 00 21
3521Comment = Certicom SEC 2
3522Description = secp224r1 (1 3 132 0 33)
3523
3524OID = 06 05 2B 81 04 00 0A
3525Comment = Certicom SEC 2
3526Description = secp256k1 (1 3 132 0 10)
3527
3528# note secp256r1 defined above in the ANSI X9.62 arc
3529
3530OID = 06 05 2B 81 04 00 22
3531Comment = Certicom SEC 2
3532Description = secp384r1 (1 3 132 0 34)
3533
3534OID = 06 05 2B 81 04 00 23
3535Comment = Certicom SEC 2
3536Description = secp521r1 (1 3 132 0 35)
3537
3538# characteristic 2 curves
3539
3540OID = 06 05 2B 81 04 00 04
3541Comment = Certicom SEC 2
3542Description = sect113r1 (1 3 132 0 4)
3543
3544OID = 06 05 2B 81 04 00 05
3545Comment = Certicom SEC 2
3546Description = sect113r2 (1 3 132 0 5)
3547
3548OID = 06 05 2B 81 04 00 16
3549Comment = Certicom SEC 2
3550Description = sect131r1 (1 3 132 0 22)
3551
3552OID = 06 05 2B 81 04 00 17
3553Comment = Certicom SEC 2
3554Description = sect131r2 (1 3 132 0 23)
3555
3556OID = 06 05 2B 81 04 00 01
3557Comment = Certicom SEC 2
3558Description = sect163k1 (1 3 132 0 1)
3559
3560OID = 06 05 2B 81 04 00 02
3561Comment = Certicom SEC 2
3562Description = sect163r1 (1 3 132 0 2)
3563
3564OID = 06 05 2B 81 04 00 0F
3565Comment = Certicom SEC 2
3566Description = sect163r2 (1 3 132 0 15)
3567
3568OID = 06 05 2B 81 04 00 18
3569Comment = Certicom SEC 2
3570Description = sect193r1 (1 3 132 0 24)
3571
3572OID = 06 05 2B 81 04 00 19
3573Comment = Certicom SEC 2
3574Description = sect193r2 (1 3 132 0 25)
3575
3576OID = 06 05 2B 81 04 00 1A
3577Comment = Certicom SEC 2
3578Description = sect233k1 (1 3 132 0 26)
3579
3580OID = 06 05 2B 81 04 00 1B
3581Comment = Certicom SEC 2
3582Description = sect233r1 (1 3 132 0 27)
3583
3584OID = 06 05 2B 81 04 00 03
3585Comment = Certicom SEC 2
3586Description = sect239k1 (1 3 132 0 3)
3587
3588OID = 06 05 2B 81 04 00 10
3589Comment = Certicom SEC 2
3590Description = sect283k1 (1 3 132 0 16)
3591
3592OID = 06 05 2B 81 04 00 11
3593Comment = Certicom SEC 2
3594Description = sect283r1 (1 3 132 0 17)
3595
3596OID = 06 05 2B 81 04 00 24
3597Comment = Certicom SEC 2
3598Description = sect409k1 (1 3 132 0 36)
3599
3600OID = 06 05 2B 81 04 00 25
3601Comment = Certicom SEC 2
3602Description = sect409r1 (1 3 132 0 37)
3603
3604OID = 06 05 2B 81 04 00 26
3605Comment = Certicom SEC 2
3606Description = sect571k1 (1 3 132 0 38)
3607
3608OID = 06 05 2B 81 04 00 27
3609Comment = Certicom SEC 2
3610Description = sect571r1 (1 3 132 0 39)
3611
3612# X9.63 addendum for ECDH
3613
3614OID = 06 07 2B 81 05 10 86 48 3F
3615Comment = X9.63
3616Description = x9-63 (1 3 133 16 840 63)
3617
3618OID = 06 08 2B 81 05 10 86 48 3F 00
3619Comment = X9.63
3620Description = x9-63-scheme (1 3 133 16 840 63 0)
3621
3622OID = 06 09 2B 81 05 10 86 48 3F 00 02
3623Comment = X9.63
3624Description = dhSinglePass-stdDH-sha1kdf-scheme (1 3 133 16 840 63 0 2)
3625
3626OID = 06 09 2B 81 05 10 86 48 3F 00 03
3627Comment = X9.63
3628Description = dhSinglePass-cofactorDH-sha1kdf-scheme (1 3 133 16 840 63 0 3)
3629
3630OID = 06 09 2B 81 05 10 86 48 3F 00 10
3631Comment = X9.63
3632Description = mqvSinglePass-sha1kdf-scheme (1 3 133 16 840 63 0 16)
3633
3634# End of Fahnenstange