X.509 Digital Certificates

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Threaded View

  I'm trying to verify a X509 Certificate. In order to do this, I need
to get the public key, Hash & Signature stored in a X509 certificate.

I am able to get the Public Key & then the exponent & modulus.
I believe that the hash is just the "thumbprint" of the certificate.

However, I am at a total loss as to which field is the Signature? Any

Thanks for your help.

Re: X.509 Digital Certificates

Quoted text here. Click to load it
The US has a group called the IETF. A subgroup of the IETF is called PKIX.
This subgroup is responsible for the definition and use of X.509
certificates on the internet. They have a specification that describes
version 2 and version 3 certificates and their layout. They are in the
process of standardizing the Simple Certificate Validation Protocol. You
might want to look at this.

If you are using Internet Explorer or a Mozilla browser and if the
certificate is signed by a well known certificate authority, and if you have
turned the check for valid certificate on, the program will
check for validation and if it can't validate it, you will be notified and
given a chance to look at the signature.

If you are trying to do this from C++, get the Network Security Services
library from Mozilla.org.
If you are trying to do this from Java, get both the NSS and Java Security
Services add on.
Good luck.

----== Posted via Newsfeeds.Com - Unlimited-Uncensored-Secure Usenet News==----
http://www.newsfeeds.com The #1 Newsgroup Service in the World! >100,000
---= East/West-Coast Server Farms - Total Privacy via Encryption =---

Re: X.509 Digital Certificates

Edward A. Feustel wrote:

Quoted text here. Click to load it

The Internet Engineering Task Force isn't 'US', it's international.

Quoted text here. Click to load it

The X.509 suite is standardized by the International Telecommunication Union
(ITU). IETF/pkix only defines the Internet "profile", or which parts of the
suite are used in IETF context.

A good start is Peter Gutmann's "X.509 style guide":

-- Lassi

Site Timeline