Commit be9063fb authored by filatov's avatar filatov
Browse files

Integrate the STF507 results to the trunk

parents d2f64f6e f5926bea
<!-- AT cert with smaller rectangular region than in the issuing AA cert --> <!-- AT cert with polygonal region restriction outside of the region of the issuer
<certificate name="CERT_TS_08_05_BO_AT"> Square polygon
Center: base point
Side length: 10km
-->
<certificate name="CERT_TS_08_08_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_08_05_BO_AA"/> <signer type="digest" name="CERT_TS_08_08_BO_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
...@@ -20,13 +24,13 @@ ...@@ -20,13 +24,13 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<polygon> <polygon>
<location latitude="0.044949" longitude="-0.062157"/> <location latitude="+5km" longitude="-5km"/>
<location latitude="0.044949" longitude="0.062064"/> <location latitude="+5km" longitude="+5km"/>
<location latitude="-0.044983" longitude="0.062064"/> <location latitude="-5km" longitude="+5km"/>
<location latitude="-0.044983" longitude="-0.062157"/> <location latitude="-5km" longitude="-5km"/>
</polygon> </polygon>
</restriction> </restriction>
</validity> </validity>
......
...@@ -2,7 +2,7 @@ ...@@ -2,7 +2,7 @@
representing a square centered on 10km to the West from ETSI representing a square centered on 10km to the West from ETSI
and having a side length of 20 km and having a side length of 20 km
--> -->
<certificate name="CERT_TS_08_06_BO_AA"> <certificate name="CERT_TS_08_09_BO_AA">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/> <signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name=""> <subject type="AA" name="">
...@@ -23,13 +23,13 @@ ...@@ -23,13 +23,13 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<polygon> <polygon>
<location latitude="0.17946" longitude="-0.497442"/> <location latitude="+10km" longitude="-20km"/>
<location latitude="0.17946" longitude="-0.248628"/> <location latitude="+10km" longitude="+0km"/>
<location latitude="-0.000404" longitude="-0.248628"/> <location latitude="-10km" longitude="+0km"/>
<location latitude="-0.000404" longitude="-0.497442"/> <location latitude="-10km" longitude="-20km"/>
</polygon> </polygon>
</restriction> </restriction>
</validity> </validity>
......
<!-- AT cert intersecting with the polygonal region of the issuing AA cert
Square polygon
Center: base point
Side length: 10km
-->
<certificate name="CERT_TS_08_09_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_08_09_BO_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<polygon>
<location latitude="+5km" longitude="-5km"/>
<location latitude="+5km" longitude="+5km"/>
<location latitude="-5km" longitude="+5km"/>
<location latitude="-5km" longitude="-5km"/>
</polygon>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
...@@ -23,7 +23,7 @@ ...@@ -23,7 +23,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="250" local="0"/> <!-- France --> <id dictionary="iso_3166_1" id="250" local="0"/> <!-- France -->
</restriction> </restriction>
......
<!-- The valid AT certificate, signed with CERT_TS_E_AA and containing <!-- The valid AT certificate, signed with CERT_TS_E_AA and containing
the same region restriction like the issuing certificate the same region restriction like the issuing certificate
without local region definition with local region definition
--> -->
<certificate name="CERT_TS_09_02_BV_AT"> <certificate name="CERT_TS_09_02_BV_AT">
<version>2</version> <version>2</version>
...@@ -23,7 +23,7 @@ ...@@ -23,7 +23,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="250" local="1"/> <!-- France --> <id dictionary="iso_3166_1" id="250" local="1"/> <!-- France -->
</restriction> </restriction>
......
<!-- AA certificate with circular region covering France -->
<certificate name="CERT_TS_09_03_BV_AA"> <certificate name="CERT_TS_09_03_BV_AA">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/> <signer type="digest" name="CERT_TEST_ROOT"/>
...@@ -19,9 +21,9 @@ ...@@ -19,9 +21,9 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="un_stats" id="150" local="0"/> <!-- Europe --> <circle latitude="46.60611" longitude="1.87528" radius="0xFFFF" mode="absolute"/>
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
......
<!-- The valid AT certificate, signed with CERT_TS_E_AA and containing <!-- The valid AT certificate with identified region, signed with certificate containing circular region
the same region restriction like the issuing certificate
without local region definition
--> -->
<certificate name="CERT_TS_09_03_BV_AT"> <certificate name="CERT_TS_09_03_BV_AT">
<version>2</version> <version>2</version>
...@@ -23,9 +21,9 @@ ...@@ -23,9 +21,9 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="un_stats" id="250" local="0"/> <id dictionary="iso_3166_1" id="250" local="1"/> <!-- France -->
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
......
<!-- AA certificate with rectangular region covering France -->
<certificate name="CERT_TS_09_04_BV_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!-- CAM -->
<aid value="37"/> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<rectangle>
<location latitude="51.083333" longitude="-4.783333" mode="absolute"/>
<location latitude="42.333333" longitude="8.216667" mode="absolute"/>
</rectangle>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The valid AT certificate with id region, signed with certificate with rectangular region-->
<certificate name="CERT_TS_09_04_BV_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_09_04_BV_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="iso_3166_1" id="250" local="1"/> <!-- France -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- AA certificate with polygonal region covering France -->
<certificate name="CERT_TS_09_05_BV_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!-- CAM -->
<aid value="37"/> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<polygon>
<location latitude="51.083333" longitude="-4.783333" mode="absolute"/>
<location latitude="51.083333" longitude="8.216667" mode="absolute"/>
<location latitude="42.333333" longitude="8.216667" mode="absolute"/>
<location latitude="42.333333" longitude="-4.783333" mode="absolute"/>
</polygon>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The valid AT certificate with id region, signed with certificate with polygonal region-->
<certificate name="CERT_TS_09_05_BV_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_09_04_BV_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="iso_3166_1" id="250" local="1"/> <!-- France -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- AA certificate with UN stats id region of Europe -->
<certificate name="CERT_TS_09_06_BV_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!-- CAM -->
<aid value="37"/> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="un_stats" id="150" local="0"/> <!-- Europe -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The valid AT certificate, signed with containing
the id region restriction inside the id region of
the issuing cert.
France
-->
<certificate name="CERT_TS_09_06_BV_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_09_06_BV_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="un_stats" id="250" local="0"/> <!-- France -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- AT cert without region restriction signed with cert with polygonal region restriction --> <!-- AT cert without region restriction signed with cert with polygonal region restriction -->
<certificate name="CERT_TS_09_04_BO_AT"> <certificate name="CERT_TS_09_07_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_E_AA"/> <signer type="digest" name="CERT_TS_E_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
...@@ -20,7 +20,7 @@ ...@@ -20,7 +20,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<none/> <none/>
</restriction> </restriction>
......
<!-- The valid AA certificate containing the same identified region as subordinate cert but other local area definition --> <!-- The valid AA certificate containing the same identified region as subordinate cert but other local area definition -->
<certificate name="CERT_TS_09_06_BO_AA"> <certificate name="CERT_TS_09_08_BO_AA">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/> <signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name=""> <subject type="AA" name="">
...@@ -21,7 +21,7 @@ ...@@ -21,7 +21,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="-365d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="250" local="1"/> <!-- France --> <id dictionary="iso_3166_1" id="250" local="1"/> <!-- France -->
</restriction> </restriction>
......
<!-- The AT certificate, containing other identified region than issuing cert <!-- The AT certificate, containing other identified region than issuing cert
--> -->
<certificate name="CERT_TS_09_05_BO_AT"> <certificate name="CERT_TS_09_08_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_09_05_BO_AA"/> <signer type="digest" name="CERT_TS_09_08_BO_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
...@@ -21,9 +21,9 @@ ...@@ -21,9 +21,9 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="250" local="0"/> <!-- France --> <id dictionary="iso_3166_1" id="250" local="2"/> <!-- France -->
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
......
<!-- The valid AA certificate containing identified region other then subordinate cert --> <!-- The valid AA certificate containing identified region other then subordinate cert -->
<certificate name="CERT_TS_09_05_BO_AA"> <certificate name="CERT_TS_09_09_BO_AA">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/> <signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name=""> <subject type="AA" name="">
...@@ -21,7 +21,7 @@ ...@@ -21,7 +21,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="56" local="0"/> <!-- Belgium --> <id dictionary="iso_3166_1" id="56" local="0"/> <!-- Belgium -->
</restriction> </restriction>
......
<!-- The AT certificate, containing other identified region than issuing cert <!-- The AT certificate, containing other identified region than issuing cert
--> -->
<certificate name="CERT_TS_09_06_BO_AT"> <certificate name="CERT_TS_09_09_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_09_06_BO_AA"/> <signer type="digest" name="CERT_TS_09_09_BO_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
...@@ -21,7 +21,7 @@ ...@@ -21,7 +21,7 @@
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="time" start="+0d" end="+365d"/>
<restriction type="region"> <restriction type="region">
<id dictionary="iso_3166_1" id="250" local="0"/> <!-- France --> <id dictionary="iso_3166_1" id="250" local="0"/> <!-- France -->
</restriction> </restriction>
......
<!-- AT cert without region restriction signed with cert with polygonal region restriction -->
<certificate name="CERT_TS_09_10_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_E_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="iso_3166_1" id="1000" local="0"/> <!-- Unknown -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The AT certificate, containing other identified region than issuing cert
-->
<certificate name="CERT_TS_09_11_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_A_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>