Commit be9063fb authored by filatov's avatar filatov
Browse files

Integrate the STF507 results to the trunk

parents d2f64f6e f5926bea
<!-- The AT certificate, containing other identified region than issuing cert
-->
<certificate name="CERT_TS_09_12_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_A_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<id dictionary="iso_3166_1" id="150" local="0"/> <!-- Europe -->
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The AT certificate signed with CERT_TS_A_AA and not containing <!-- The AT certificate signed with CERT_TS_A_AA and not containing
validity restriction of type time_start_and_end validity restriction of type time_start_and_end
--> -->
<certificate name="CERT_TS_10_01_BO_AT"> <certificate name="CERT_TS_10_01_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_A_AA"/> <signer type="digest" name="CERT_TS_A_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/> <ecc_point type="uncompressed"/>
</public_key> </public_key>
</attribute> </attribute>
<!-- assurance_level --> <!-- assurance_level -->
<attribute type="assurance_level"> <attribute type="assurance_level">
<assurance level="3"/> <assurance level="3"/>
</attribute> </attribute>
<!-- its_aid_ssp_list --> <!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list"> <attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> <ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> <ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="region"> <restriction type="region">
<none/> <none/>
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
</certificate> </certificate>
<!-- Authorization authority certificate without any region restriction -->
<certificate name="CERT_TS_10_02_BO_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!--CAM--> <!-- CAM -->
<aid value="37"/> <!--DENM--> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="region">
<none/>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The AT certificate signed with CERT_TS_A_AA and containing <certificate name="CERT_TS_10_02_BO_AT">
validity restrictions of type time_start_and_end and time_ end <version>2</version>
--> <signer type="digest" name="CERT_TS_10_02_BO_AA"/>
<certificate name="CERT_TS_10_02_BO_AT"> <subject type="AT" name="">
<version>2</version> <!-- verification_key -->
<signer type="digest" name="CERT_TS_A_AA"/> <attribute type="verification_key">
<subject type="AT" name=""> <public_key algorythm="ecdsa_nistp256_with_sha256">
<!-- verification_key --> <ecc_point type="uncompressed"/>
<attribute type="verification_key"> </public_key>
<public_key algorythm="ecdsa_nistp256_with_sha256"> </attribute>
<ecc_point type="uncompressed"/> <!-- assurance_level -->
</public_key> <attribute type="assurance_level">
</attribute> <assurance level="3"/>
<!-- assurance_level --> </attribute>
<attribute type="assurance_level"> <!-- its_aid_ssp_list -->
<assurance level="3"/> <attribute type="its_aid_ssp_list">
</attribute> <ssp aid="36">&#x01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<!-- its_aid_ssp_list --> <ssp aid="37">&#x01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
<attribute type="its_aid_ssp_list"> </attribute>
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> </subject>
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> <validity>
</attribute> <restriction type="time" start="-0d" end="+365d"/>
</subject> <restriction type="region">
<validity> <none/>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> </restriction>
<restriction type="time" end="2015-04-30"/> </validity>
<restriction type="region"> <signature algorithm="0"/>
<none/> </certificate>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The AT certificate signed with CERT_TS_A_AA and containing <!-- The AT certificate signed with CERT_TS_A_AA and containing validity restrictions of time_end
validity restrictions of types ‘time_start_and_end’ and ‘time_start_and_duration’ -->
--> <certificate name="CERT_TS_10_03_BO_AT">
<certificate name="CERT_TS_10_03_BO_AT"> <version>2</version>
<version>2</version> <signer type="digest" name="CERT_TS_A_AA"/>
<signer type="digest" name="CERT_TS_A_AA"/> <subject type="AT" name="">
<subject type="AT" name=""> <!-- verification_key -->
<!-- verification_key --> <attribute type="verification_key">
<attribute type="verification_key"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <ecc_point type="uncompressed"/>
<ecc_point type="uncompressed"/> </public_key>
</public_key> </attribute>
</attribute> <!-- assurance_level -->
<!-- assurance_level --> <attribute type="assurance_level">
<attribute type="assurance_level"> <assurance level="3"/>
<assurance level="3"/> </attribute>
</attribute> <!-- its_aid_ssp_list -->
<!-- its_aid_ssp_list --> <attribute type="its_aid_ssp_list">
<attribute type="its_aid_ssp_list"> <ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> <ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> </attribute>
</attribute> </subject>
</subject> <validity>
<validity> <restriction type="time" end="+365d"/>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <restriction type="region">
<restriction type="time" start="2015-01-01" duration="365d"/> <none/>
<restriction type="region"> </restriction>
<none/> </validity>
</restriction> <signature algorithm="0"/>
</validity> </certificate>
<signature algorithm="0"/>
</certificate>
<!-- An invalid AT cert without region restriction signed with cert with polygonal region restriction --> <!-- The AT certificate signed with CERT_TS_A_AA and containing validity restrictions of type time_start_and_duration
<certificate name="CERT_TS_08_03_BO_AT"> -->
<version>2</version> <certificate name="CERT_TS_10_04_BO_AT">
<signer type="digest" name="CERT_TS_D_AA"/> <version>2</version>
<subject type="AT" name=""> <signer type="digest" name="CERT_TS_A_AA"/>
<!-- verification_key --> <subject type="AT" name="">
<attribute type="verification_key"> <!-- verification_key -->
<public_key algorythm="ecdsa_nistp256_with_sha256"> <attribute type="verification_key">
<ecc_point type="uncompressed"/> <public_key algorythm="ecdsa_nistp256_with_sha256">
</public_key> <ecc_point type="uncompressed"/>
</attribute> </public_key>
<!-- assurance_level --> </attribute>
<attribute type="assurance_level"> <!-- assurance_level -->
<assurance level="3"/> <attribute type="assurance_level">
</attribute> <assurance level="3"/>
<!-- its_aid_ssp_list --> </attribute>
<attribute type="its_aid_ssp_list"> <!-- its_aid_ssp_list -->
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> <attribute type="its_aid_ssp_list">
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> <ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
</attribute> <ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</subject> </attribute>
<validity> </subject>
<restriction type="time" start="2015-01-01" end="2015-04-30"/> <validity>
<restriction type="region"> <restriction type="time" start="+0d" duration="365d"/>
<none/> <restriction type="region">
</restriction> <none/>
</validity> </restriction>
<signature algorithm="0"/> </validity>
</certificate> <signature algorithm="0"/>
</certificate>
<!-- Authorization authority certificate containing validity restrictions of type time_end -->
<certificate name="CERT_TS_10_05_BO_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!--CAM--> <!-- CAM -->
<aid value="37"/> <!--DENM--> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" end="+365d"/>
<restriction type="region">
<none/>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<certificate name="CERT_TS_10_05_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_10_05_BO_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#x01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#x01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="today" end="+365d"/>
<restriction type="region">
<none/>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- Authorization authority certificate containing validity restrictions of type time_start_and_duration -->
<certificate name="CERT_TS_10_06_BO_AA">
<version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="4" confidence="0"/>
</attribute>
<!-- its_aid_list -->
<attribute type="its_aid_list">
<aid value="36"/> <!--CAM--> <!-- CAM -->
<aid value="37"/> <!--DENM--> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" duration="365d"/>
<restriction type="region">
<none/>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<certificate name="CERT_TS_10_06_BO_AT">
<version>2</version>
<signer type="digest" name="CERT_TS_10_06_BO_AA"/>
<subject type="AT" name="">
<!-- verification_key -->
<attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/>
</public_key>
</attribute>
<!-- assurance_level -->
<attribute type="assurance_level">
<assurance level="3"/>
</attribute>
<!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list">
<ssp aid="36">&#x01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#x01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute>
</subject>
<validity>
<restriction type="time" start="+0d" end="+365d"/>
<restriction type="region">
<none/>
</restriction>
</validity>
<signature algorithm="0"/>
</certificate>
<!-- The AT certificate signed with CERT_TS_A_AA and <!-- The AT certificate signed with CERT_TS_A_AA and
containing validity restriction of type time_start_and_end containing validity restriction of type time_start_and_end
which ends after the end time of CERT_TS_A_AA which ends after the end time of CERT_TS_A_AA
--> -->
<certificate name="CERT_TS_11_01_BO_AT"> <certificate name="CERT_TS_11_01_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_A_AA"/> <signer type="digest" name="CERT_TS_A_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/> <ecc_point type="uncompressed"/>
</public_key> </public_key>
</attribute> </attribute>
<!-- assurance_level --> <!-- assurance_level -->
<attribute type="assurance_level"> <attribute type="assurance_level">
<assurance level="3"/> <assurance level="3"/>
</attribute> </attribute>
<!-- its_aid_ssp_list --> <!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list"> <attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> <ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> <ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<!-- Ends one day after AA cert --> <!-- Ends one day after AA cert -->
<restriction type="time" start="2015-01-01" end="2015-05-01"/> <restriction type="time" start="+0d" end="+370d"/> <!-- 5 days after CERT_TS_A_AA end time -->
<restriction type="region"> <restriction type="region">
<none/> <none/>
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
</certificate> </certificate>
<!-- The AT certificate signed with CERT_TS_A_AA and <!-- The AT certificate signed with CERT_TS_A_AA and
containing validity restriction of type ‘time_start_and_end’ containing validity restriction of type ‘time_start_and_end’
which ends after the end time of CERT_TS_A_AA which ends after the end time of CERT_TS_A_AA
--> -->
<certificate name="CERT_TS_11_02_BO_AT"> <certificate name="CERT_TS_11_02_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_A_AA"/> <signer type="digest" name="CERT_TS_A_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/> <ecc_point type="uncompressed"/>
</public_key> </public_key>
</attribute> </attribute>
<!-- assurance_level --> <!-- assurance_level -->
<attribute type="assurance_level"> <attribute type="assurance_level">
<assurance level="3"/> <assurance level="3"/>
</attribute> </attribute>
<!-- its_aid_ssp_list --> <!-- its_aid_ssp_list -->
<attribute type="its_aid_ssp_list"> <attribute type="its_aid_ssp_list">
<ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM --> <ssp aid="36">&#01;&#xFF;&#xFF;</ssp> <!-- CAM -->
<ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM --> <ssp aid="37">&#01;&#xFF;&#xFF;&#xFF;</ssp> <!-- DENM -->
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<!-- Starts one day before the AA cert --> <!-- Starts one day before the AA cert -->
<restriction type="time" start="2014-12-31" end="2015-04-30"/> <restriction type="time" start="-5d" end="+365d"/> <!-- 5 days before CERT_TS_A_AA start time -->
<restriction type="region"> <restriction type="region">
<none/> <none/>
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
</certificate> </certificate>
<!-- The expired AA certificate --> <!-- The expired AA certificate -->
<certificate name="CERT_TS_11_03_BO_AA"> <certificate name="CERT_TS_11_03_BO_AA">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TEST_ROOT"/> <signer type="digest" name="CERT_TEST_ROOT"/>
<subject type="AA" name=""> <subject type="AA" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/> <ecc_point type="uncompressed"/>
</public_key> </public_key>
</attribute> </attribute>
<!-- assurance_level --> <!-- assurance_level -->
<attribute type="assurance_level"> <attribute type="assurance_level">
<assurance level="4" confidence="0"/> <assurance level="4" confidence="0"/>
</attribute> </attribute>
<!-- its_aid_list --> <!-- its_aid_list -->
<attribute type="its_aid_list"> <attribute type="its_aid_list">
<aid value="36"/> <!-- CAM --> <aid value="36"/> <!-- CAM -->
<aid value="37"/> <!-- DENM --> <aid value="37"/> <!-- DENM -->
</attribute> </attribute>
</subject> </subject>
<validity> <validity>
<restriction type="time" start="2015-01-01" end="2015-03-01"/> <restriction type="time" start="-365d" end="-5d"/> <!-- expired before base time -->
<restriction type="region"> <restriction type="region">
<none/> <none/>
</restriction> </restriction>
</validity> </validity>
<signature algorithm="0"/> <signature algorithm="0"/>
</certificate> </certificate>
<!-- The AT certificate signed with the expired CERT_TS_11_03_BO_AA <!-- The AT certificate signed with the expired CERT_TS_11_03_BO_AA
--> -->
<certificate name="CERT_TS_11_03_BO_AT"> <certificate name="CERT_TS_11_03_BO_AT">
<version>2</version> <version>2</version>
<signer type="digest" name="CERT_TS_11_03_BO_AA"/> <signer type="digest" name="CERT_TS_11_03_BO_AA"/>
<subject type="AT" name=""> <subject type="AT" name="">
<!-- verification_key --> <!-- verification_key -->
<attribute type="verification_key"> <attribute type="verification_key">
<public_key algorythm="ecdsa_nistp256_with_sha256"> <public_key algorythm="ecdsa_nistp256_with_sha256">
<ecc_point type="uncompressed"/> <ecc_point type="uncompressed"/>
</public_key> </public_key>
</attribute> </attribute>