From 9f141638db8652cf3318a5e91e9dd0a65002c497 Mon Sep 17 00:00:00 2001 From: Raul Metsma Date: Mon, 16 Dec 2024 15:45:52 +0200 Subject: [PATCH] ASiC-S LTA extending support IB-8182 Signed-off-by: Raul Metsma --- src/SignatureTST.cpp | 55 ++++++++++++++++++++++++++++++++++++++++++++ src/SignatureTST.h | 1 + 2 files changed, 56 insertions(+) diff --git a/src/SignatureTST.cpp b/src/SignatureTST.cpp index 120f1b17c..78af09c9b 100644 --- a/src/SignatureTST.cpp +++ b/src/SignatureTST.cpp @@ -103,6 +103,61 @@ std::vector SignatureTST::ArchiveTimeStamps() const return result; } +void SignatureTST::extendSignatureProfile(Signer *signer) +{ + + string tstName = "META-INF/timestamp001.tst"; + for(size_t i = 1; + any_of(metadata.cbegin(), metadata.cend(), [&tstName](const auto &f) { return f.name == tstName; }); + tstName = Log::format("META-INF/timestamp%03zu.tst", ++i)); + + auto doc = XMLDocument::create("ASiCManifest", ASiContainer::ASIC_NS, "asic"); + auto ref = doc + "SigReference"; + ref.setProperty("MimeType", "application/vnd.etsi.timestamp-token"); + ref.setProperty("URI", tstName); + + auto addRef = [&doc](const string &name, string_view mime, bool root, const Digest &digest) { + auto ref = doc + "DataObjectReference"; + ref.setProperty("MimeType", mime); + ref.setProperty("URI", util::File::toUriPath(name)); + if(root) + ref.setProperty("Rootfile", "true"); + auto method = ref + DigestMethod; + method.setNS(method.addNS(DSIG_NS, "ds")); + method.setProperty("Algorithm", digest.uri()); + auto value = ref + DigestValue; + value.setNS(value.addNS(DSIG_NS, "ds")); + value = digest.result(); + }; + + DataFile *file = asicSDoc->dataFiles().front(); + Digest digest; + static_cast(file)->digest(digest); + addRef(file->fileName(), file->mediaType(), false, digest); + for(auto &data: metadata) + { + if(data.name == "META-INF/ASiCArchiveManifest.xml") + { + string mfsName = "META-INF/ASiCArchiveManifest001.xml"; + for(size_t i = 0; + any_of(metadata.cbegin(), metadata.cend(), [&mfsName](const auto &f) { return f.name == mfsName; }); + mfsName = Log::format("META-INF/ASiCArchiveManifest%03zu.xml", ++i)); + data.name = mfsName; + data.root = true; + } + addRef(data.name, data.mime, data.root, data.digest()); + } + + string data; + doc.save([&data](const char *buf, size_t size) { + data.append(buf, size); + return size; + }, true); + metadata.push_back({"META-INF/ASiCArchiveManifest.xml", "text/xml", std::move(data)}); + vector der = TS(metadata.back().digest(), signer->userAgent()); + metadata.push_back({tstName, "application/vnd.etsi.timestamp-token", {der.cbegin(), der.cend()}}); +} + X509Cert SignatureTST::TimeStampCertificate() const { return timestampToken->cert(); diff --git a/src/SignatureTST.h b/src/SignatureTST.h index 7047d04da..d6da41b0a 100644 --- a/src/SignatureTST.h +++ b/src/SignatureTST.h @@ -50,6 +50,7 @@ class SignatureTST final: public Signature void validate() const final; std::vector dataToSign() const final; void setSignatureValue(const std::vector &signatureValue) final; + void extendSignatureProfile(Signer *signer) final; // Xades properties std::string profile() const final;