Skip to main content

CertRef

Struct CertRef 

Source
pub struct CertRef<'a>(/* private fields */);

Implementations§

Source§

impl<'a> CertRef<'a>

Source

pub const fn new(tlv: TLVElement<'a>) -> CertRef<'a>

Source

pub fn pubkey(&self) -> Result<&[u8], Error>

Source

pub fn get_node_id(&self) -> Result<u64, Error>

Source

pub fn get_cat_ids(&self, output: &mut [u32]) -> Result<(), Error>

Source

pub fn get_fabric_id(&self) -> Result<u64, Error>

Source

pub fn get_ca_id(&self) -> Result<u64, Error>

Subject CA-ID — the RootCaId of an RCAC or the IcaId of an ICAC. Matter-issued RCACs always carry exactly one RootCaId in their subject DN; ICACs always carry exactly one IcaId (spec). Returns the first matching value; errors out if neither tag is present.

Source

pub fn basic_constraints_path_len(&self) -> Result<Option<u8>, Error>

BasicConstraints.pathLenConstraint, or None if absent (either the extension itself is missing or the field is omitted).

Exposed for the AddTrustedRootCertificate flow, which the Matter spec requires to additionally reject an RCAC whose pathLenConstraint is greater than 1 (see CHIP’s ValidateChipRCAC).

Source

pub fn is_self_signed(&self) -> Result<bool, Error>

Whether this certificate is self-signed (its AuthorityKeyId matches its SubjectKeyId). Matter-issued RCACs are always self-signed; an ICAC or NOC must not be (Matter Core spec).

Source

pub fn as_asn1(&self, buf: &mut [u8]) -> Result<usize, Error>

Source

pub fn verify_chain_start<C>( &'a self, crypto: C, utc_time: UtcTime, ) -> CertVerifier<'a, C>
where C: Crypto,

Start a chain verification of this certificate.

Every cert added to the chain (the leaf here, intermediates via CertVerifier::add_cert, and the self-signed root via CertVerifier::finalise) is checked against lkg_utc_secs for its NotBefore / NotAfter validity window, per Matter Core spec which mandates use of the Last-Known-Good UTC Time when no live trusted real-time-clock value is available. Callers snapshot the value from [crate::Matter::last_known_utc_time] (Matter-epoch seconds).

Trait Implementations§

Source§

impl<'a> Clone for CertRef<'a>

Source§

fn clone(&self) -> CertRef<'a>

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl<'a> Debug for CertRef<'a>

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result<(), Error>

Formats the value using the given formatter. Read more
Source§

impl Display for CertRef<'_>

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result<(), Error>

Formats the value using the given formatter. Read more
Source§

impl<'a> Eq for CertRef<'a>

Source§

impl<'a> FromTLV<'a> for CertRef<'a>

Source§

fn from_tlv(element: &TLVElement<'a>) -> Result<CertRef<'a>, Error>

Deserialize the type from a TLV-encoded element.
Source§

fn init_from_tlv(element: TLVElement<'a>) -> impl Init<Self, Error>

Generate an in-place initializer for the type that initializes the type from a TLV-encoded element.
Source§

fn nullable_from_tlv(element: &TLVElement<'a>) -> Result<Self, Error>

Deserialize the type from a TLV-encoded element. Read more
Source§

fn init_nullable_from_tlv(element: TLVElement<'a>) -> impl Init<Self, Error>

Generate an in-place initializer for the type that initializes the type from a TLV-encoded element. Read more
Source§

impl<'a> Hash for CertRef<'a>

Source§

fn hash<__H>(&self, state: &mut __H)
where __H: Hasher,

Feeds this value into the given Hasher. Read more
1.3.0 · Source§

fn hash_slice<H>(data: &[Self], state: &mut H)
where H: Hasher, Self: Sized,

Feeds a slice of this type into the given Hasher. Read more
Source§

impl<'a> PartialEq for CertRef<'a>

Source§

fn eq(&self, other: &CertRef<'a>) -> bool

Equality operator ==. Read more
1.0.0 (const: unstable) · Source§

fn ne(&self, other: &Rhs) -> bool

Inequality operator !=. Read more
Source§

impl<'a> StructuralPartialEq for CertRef<'a>

Source§

impl<'a> ToTLV for CertRef<'a>

Source§

fn to_tlv<W>(&self, tag: &TLVTag, tw: W) -> Result<(), Error>
where W: TLVWrite,

Serialize the type to a TLV-encoded stream.
Source§

fn tlv_iter(&self, tag: TLVTag) -> impl Iterator<Item = Result<TLV<'_>, Error>>

Serialize the type as an iterator of TLV instances by potentially borrowing data from the type.
Source§

fn nullable_to_tlv<W>(&self, tag: &TLVTag, tw: W) -> Result<(), Error>
where W: TLVWrite,

Serialize the type to a TLV-encoded stream. Read more
Source§

fn nullable_tlv_iter( &self, tag: TLVTag, ) -> impl Iterator<Item = Result<TLV<'_>, Error>>

Serialize the type as an iterator of TLV instances by potentially borrowing data from the type. Read more
Source§

impl<'a> TryFrom<&TLVElement<'a>> for CertRef<'a>

Source§

type Error = Error

The type returned in the event of a conversion error.
Source§

fn try_from( element: &TLVElement<'a>, ) -> Result<CertRef<'a>, <CertRef<'a> as TryFrom<&TLVElement<'a>>>::Error>

Performs the conversion.

Auto Trait Implementations§

§

impl<'a> Freeze for CertRef<'a>

§

impl<'a> RefUnwindSafe for CertRef<'a>

§

impl<'a> Send for CertRef<'a>

§

impl<'a> Sync for CertRef<'a>

§

impl<'a> Unpin for CertRef<'a>

§

impl<'a> UnsafeUnpin for CertRef<'a>

§

impl<'a> UnwindSafe for CertRef<'a>

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T, E> Init<T, E> for T

Source§

unsafe fn __init(self, slot: *mut T) -> Result<(), E>

Initializes slot. Read more
Source§

fn chain<F>(self, f: F) -> ChainInit<Self, F, T, E>
where F: FnOnce(&mut T) -> Result<(), E>,

First initializes the value using self then calls the function f with the initialized value. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> IntoEither for T

Source§

fn into_either(self, into_left: bool) -> Either<Self, Self>

Converts self into a Left variant of Either<Self, Self> if into_left is true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
Source§

fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
where F: FnOnce(&Self) -> bool,

Converts self into a Left variant of Either<Self, Self> if into_left(&self) returns true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
Source§

impl<T, I> IntoFallibleInit<T> for I
where I: Init<T>,

Source§

fn into_fallible<E>(self) -> impl Init<T, E>

Convert the infallible initializer to a fallible one.
Source§

impl<Source, Target> OctetsInto<Target> for Source
where Target: OctetsFrom<Source>,

Source§

type Error = <Target as OctetsFrom<Source>>::Error

Source§

fn try_octets_into( self, ) -> Result<Target, <Source as OctetsInto<Target>>::Error>

Performs the conversion.
Source§

fn octets_into(self) -> Target
where Self::Error: Into<Infallible>,

Performs an infallible conversion.
Source§

impl<T, E> PinInit<T, E> for T

Source§

unsafe fn __pinned_init(self, slot: *mut T) -> Result<(), E>

Initializes slot. Read more
Source§

fn pin_chain<F>(self, f: F) -> ChainPinInit<Self, F, T, E>
where F: FnOnce(Pin<&mut T>) -> Result<(), E>,

First initializes the value using self then calls the function f with the initialized value. Read more
Source§

impl<T> Read<Exclusive, BecauseExclusive> for T
where T: ?Sized,

Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T> ToString for T
where T: Display + ?Sized,

Source§

fn to_string(&self) -> String

Converts the given value to a String. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

Source§

fn vzip(self) -> V