Crate openpgp_ca_lib
source ·Expand description
OpenPGP CA functionality as a library
Example usage:
// all state of an OpenPGP CA instance is persisted in one SQLite database
let db_filename = "/tmp/openpgp-ca.sqlite";
// Set up a new, uninitialized OpenPGP CA database
// (implicitly creates the database file).
let ca_uninit = Uninit::new(Some(db_filename)).expect("Failed to set up CA");
// Initialize the CA, create the CA key (with domain name and descriptive name)
let ca = ca_uninit
.init_softkey("example.org", Some("Example Org OpenPGP CA Key"))
.unwrap();
// Create a new user, certified by the CA, and a trust signature by the user
// key on the CA key.
//
// The new private key for the user is printed to stdout and needs to be manually
// processed from there.
ca.user_new(Some(&"Alice"), &["alice@example.org"], None, false, false)
.unwrap();
Modules§
- OpenPGP CA database access and model.
- PGP helper functions.
- OpenPGP CA data types.
Structs§
- An initialized OpenPGP CA instance, with a configured backend. Oca exposes the main functionality of OpenPGP CA.
- A CA instance that has a database, which is (possibly) not initialized yet. No backend for private key operations is available at this stage.
Constants§
- The version of this crate.
Functions§
- List of cards that are blank (no fingerprint in any slot)
- List of cards that match the CA cert
cert