嵌入式OCSP的BouncyCastle时间戳

时间:2018-07-09 05:36:16

标签: c# timestamp bouncycastle ocsp

那里:

我正在建立BouncyCastle(c#)的TimeStamp授权,一切正常,但是,我无法弄清楚如何在通过时间戳记密钥签名时嵌入OCSP响应,默认情况下,它仅使用时间戳记证书中定义的CRL

TimeStampTokenGenerator tokenGen = new TimeStampTokenGenerator(theIssuerPrivateKey, cert, TspAlgorithms.Sha512, "1.2");

                IList certList = new ArrayList();
                certList.Add(cert);

                IX509Store x509Certs = X509StoreFactory.Create("Certificate/Collection", new X509CollectionStoreParameters(certList));
                tokenGen.SetCertificates(x509Certs);

                TimeStampRequestGenerator reqGen = new TimeStampRequestGenerator();
                reqGen.SetCertReq(true);
                TimeStampRequest req = reqGen.Generate(TspAlgorithms.Sha512, content);

                TimeStampResponseGenerator respGen = new TimeStampResponseGenerator(tokenGen, TspAlgorithms.Allowed);
                TimeStampResponse resp = respGen.Generate(req, new BigInteger("23"), signTime);

                //embedded some ocsp response to tokenGen maybe? But how?

请帮助。...

0 个答案:

没有答案