Clover Coverage Report
Coverage timestamp: Sun Mar 23 2008 08:24:39 GMT
0   79   1   -
0   7   -   0
0     -  
1    
 
 
  SignatureVerifier       Line # 54 0 1 - -1.0
 
No Tests
 
1    /*
2    * Copyright (c) 2000-2005, University of Salford
3    * All rights reserved.
4    *
5    * Redistribution and use in source and binary forms, with or without
6    * modification, are permitted provided that the following conditions are met:
7    *
8    * Redistributions of source code must retain the above copyright notice, this
9    * list of conditions and the following disclaimer.
10    *
11    * Redistributions in binary form must reproduce the above copyright notice,
12    * this list of conditions and the following disclaimer in the documentation
13    * and/or other materials provided with the distribution.
14    *
15    * Neither the name of the University of Salford nor the names of its
16    * contributors may be used to endorse or promote products derived from this
17    * software without specific prior written permission.
18    *
19    * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
20    * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21    * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22    * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
23    * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24    * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25    * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26    * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27    * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28    * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29    * POSSIBILITY OF SUCH DAMAGE.
30    */
31   
32    package issrg.pba.rbac;
33   
34    import java.security.Principal;
35   
36    /**
37    * This abstract class is the wrapper for the cryptographic functionality
38    * required to validate digital signatures.
39    *
40    * <p>Note that this somewhat duplicates the other interface,
41    * issrg.security.Verifier. This double wrapping allows to integrate the
42    * signature verification at different levels. SignatureVerifier interface
43    * has smaller demands, e.g. it does not require the underlying implementation
44    * to have access to the actual Verification Certificates, whilst the
45    * issrg.security.Verifier requires the implementation to be able to provide the
46    * signature verification certificates. The Verifier interface is more generic,
47    * but may be harder to implement.
48    *
49    * @author A Otenko
50    * @author E Ball
51    * @author D W Chadwick
52    * @version 0.2
53    */
 
54    public interface SignatureVerifier {
55    /**
56    * This method checks if the Signature for the given Value has been created by
57    * the Signer. It is the responsibility of this object to fetch any relevant
58    * CRLs, or call an OCSP server or any other method to ensure that the public
59    * key of the Signer has not been revoked. It is also the responsibility of
60    * this object to fetch the public key certificate of the signer, and to
61    * follow the certification path back to its root of trust. If the signer is
62    * not certified directly or indirectly beneath the root or roots of trust
63    * that the PKI knows about, then it must fail to verify the signature.
64    *
65    * @param Value is the byte array that had been signed
66    * @param Signature is the byte array of the resulting signature
67    * @param algorithmID is the String representation (dotted form) of the
68    * object identifier of the algorithm used for signing
69    * @param Signer is the TokenLocator of the signer
70    *
71    * @return true, if there is a valid non-revoked PKI token, which proves the
72    * signature is valid; false otherwise
73    *
74    * @throws PkiException if any unrecoverable error occurs
75    */
76    public boolean checkSignature(byte[] Value, byte[] Signature,
77    String algorithmID, issrg.utils.repository.TokenLocator Signer)
78    throws PkiException;
79    }