]> git.saurik.com Git - apple/security.git/blob - OSX/libsecurity_keychain/lib/TrustItem.h
Security-57740.60.18.tar.gz
[apple/security.git] / OSX / libsecurity_keychain / lib / TrustItem.h
1 /*
2 * Copyright (c) 2002-2004,2011,2014 Apple Inc. All Rights Reserved.
3 *
4 * @APPLE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
11 * file.
12 *
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
20 *
21 * @APPLE_LICENSE_HEADER_END@
22 */
23
24 //
25 // TrustStore.h - Abstract interface to permanent user trust assignments
26 //
27 #ifndef _SECURITY_TRUSTITEM_H_
28 #define _SECURITY_TRUSTITEM_H_
29
30 #include <security_keychain/Item.h>
31 #include <security_keychain/Certificate.h>
32 #include <security_keychain/Policies.h>
33 #include <Security/SecTrustPriv.h>
34
35
36 namespace Security {
37 namespace KeychainCore {
38
39
40 //
41 // A trust item in a keychain.
42 // Currently, Item constructors do not explicitly generate this subclass.
43 // They don't need to, since our ownly user (TrustStore) can deal with
44 // the generic Item class just fine.
45 // If we ever need Item to produce UserTrustItem impls, we would need to
46 // add constructors from primary key (see Certificate for an example).
47 //
48 class UserTrustItem : public ItemImpl {
49 NOCOPY(UserTrustItem)
50 public:
51 struct TrustData {
52 Endian<uint32> version; // version mark
53 Endian<SecTrustUserSetting> trust; // user's trust choice
54 };
55 static const uint32 currentVersion = 0x101;
56
57 public:
58 // new item constructor
59 UserTrustItem(Certificate *cert, Policy *policy, const TrustData &trust);
60 virtual ~UserTrustItem();
61
62 TrustData trust();
63
64 public:
65 static void makeCertIndex(Certificate *cert, CssmOwnedData &index);
66
67 protected:
68 virtual PrimaryKey add(Keychain &keychain);
69
70 void populateAttributes();
71
72 private:
73 SecPointer<Certificate> mCertificate;
74 SecPointer<Policy> mPolicy;
75 };
76
77
78 } // end namespace KeychainCore
79 } // end namespace Security
80
81 #endif // !_SECURITY_TRUSTITEM_H_