计算X509证书的密钥标识符

时间:2013-08-06 16:19:36

标签: windows-mobile certificate x509

我想计算X509证书的CERT_KEY_IDENTIFIER_PROP_ID,以便将其静默添加到Windows Mobile设备的注册表中(在暂存期间)。截至this site,它的计算如下:

SEQ[SEQ[rsa], key]

我想keycert.GetPublicKey(),但这里的rsa是什么意思(我猜不是算法)?

现在在网上搜索三个小时,如果有人能指出我正确的方向,我会很高兴。

1 个答案:

答案 0 :(得分:3)

要读取我需要写入注册表项的属性,我最终使用了以下CryptoAPI方法:

[DllImport("crypt32.dll", SetLastError = true)]
private static extern IntPtr CertCreateCertificateContext(int dwCertEncodingType, byte[] pbCertEncoded, int cbCertEncoded);

[DllImport("crypt32.dll", SetLastError = true)]
private static extern bool CertFreeCertificateContext(IntPtr pCertContext);

[DllImport("crypt32.dll", SetLastError = true)]
private static extern bool CertGetCertificateContextProperty(IntPtr pCertContext, int dwPropId, IntPtr pvData, ref int pcbData);

private byte[] GetKeyIdentifier(X509Certificate certificate)
{
  var data = certificate.GetRawCertData();

  var context = CertCreateCertificateContext(1, data, data.Length);

  try
  {
    return ReadProperty(context, 0x14);
  }
  finally
  {
    CertFreeCertificateContext(context);
  }
}

private byte[] ReadProperty(IntPtr context, int property)
{
  var length = 0;

  // determine the ammount of memory to allocate for the data
  if (CertGetCertificateContextProperty(context, property, IntPtr.Zero, ref length))
  {
    var pointer = Marshal.AllocCoTaskMem(length);

    try
    {
      // query the property which is written to the allocated memory
      if (CertGetCertificateContextProperty(context, property, pointer, ref length) == false)
      {
        throw new InvalidOperationException(string.Format("Failed to query property {0}.", property));
      }

      // extract the data from the unmanaged memory
      var buffer = new byte[length];
      Marshal.Copy(pointer, buffer, 0, length);

      return buffer;
    }
    finally
    {
      Marshal.FreeCoTaskMem(pointer);
    }
  }
  else
  {
    throw new InvalidOperationException(string.Format("Failed to query property {0}.", property));
  }
}