種類
ライブラリ
- ビルトイン (250)
- bigdecimal (96)
- etc (12)
-
fiddle
/ import (48) -
minitest
/ unit (1) - mkmf (24)
- monitor (12)
- openssl (744)
-
rubygems
/ package (24) -
rubygems
/ package / tar _ output (36) -
rubygems
/ security (168) -
rubygems
/ source _ index (24) -
rubygems
/ specification (36) - shell (6)
-
shell
/ process-controller (6) -
shell
/ system-command (6) - socket (24)
- thread (2)
クラス
- BigDecimal (96)
-
Gem
:: Package :: TarOutput (36) -
Gem
:: Security :: Policy (60) -
Gem
:: Security :: Signer (72) -
Gem
:: SourceIndex (24) -
Gem
:: Specification (36) -
MiniTest
:: Unit :: TestCase (1) -
MonitorMixin
:: ConditionVariable (12) -
OpenSSL
:: Netscape :: SPKI (24) -
OpenSSL
:: OCSP :: BasicResponse (12) -
OpenSSL
:: OCSP :: Request (12) -
OpenSSL
:: PKCS7 (192) -
OpenSSL
:: PKCS7 :: SignerInfo (60) -
OpenSSL
:: PKey :: DSA (24) -
OpenSSL
:: PKey :: EC (24) -
OpenSSL
:: PKey :: PKey (24) -
OpenSSL
:: X509 :: CRL (24) -
OpenSSL
:: X509 :: Certificate (24) -
OpenSSL
:: X509 :: Request (36) -
OpenSSL
:: X509 :: Store (24) -
OpenSSL
:: X509 :: StoreContext (24) - Proc (48)
-
Process
:: Status (12) - Shell (6)
-
Shell
:: ProcessController (6) -
Shell
:: SystemCommand (6) - SignalException (60)
- Socket (12)
-
Thread
:: ConditionVariable (12) - Time (12)
モジュール
- Etc (12)
-
Fiddle
:: Importer (48) -
Gem
:: Package (24) -
Gem
:: Security (24) - Kernel (48)
-
OpenSSL
:: OCSP (12) -
OpenSSL
:: X509 (144) - Process (12)
- Signal (48)
-
Socket
:: Constants (12)
キーワード
- === (12)
- BINARY (12)
- DETACHED (12)
- DH (12)
- DSA (12)
- FIX2UINT (12)
- FIX2ULONG (12)
-
MSG
_ NOSIGNAL (24) - NOATTR (12)
- NOCASIGN (12)
- NOCERTS (12)
- NOSMIMECAP (12)
- NUM2UINT (12)
- NUM2ULONG (12)
- NUM2USHORT (12)
- PKey (12)
-
PURPOSE
_ CRL _ SIGN (12) -
PURPOSE
_ SMIME _ SIGN (12) - RSA (12)
- Request (12)
-
SC
_ REALTIME _ SIGNALS (12) -
SIGN
_ NEGATIVE _ FINITE (12) -
SIGN
_ NEGATIVE _ INFINITE (12) -
SIGN
_ NEGATIVE _ ZERO (12) -
SIGN
_ NaN (12) -
SIGN
_ POSITIVE _ FINITE (12) -
SIGN
_ POSITIVE _ INFINITE (12) -
SIGN
_ POSITIVE _ ZERO (12) -
SUPPORTS
_ INFO _ SIGNAL (1) - Signal (12)
- SignalException (12)
- Signer (24)
- SignerInfo (12)
- TEXT (12)
-
TRUST
_ OBJECT _ SIGN (12) -
TRUST
_ OCSP _ SIGN (12) - UINT2NUM (12)
- ULL2NUM (12)
- ULONG2NUM (12)
-
V
_ ERR _ CERT _ SIGNATURE _ FAILURE (12) -
V
_ ERR _ CRL _ SIGNATURE _ FAILURE (12) -
V
_ ERR _ DEPTH _ ZERO _ SELF _ SIGNED _ CERT (12) -
V
_ ERR _ KEYUSAGE _ NO _ CERTSIGN (12) -
V
_ ERR _ SELF _ SIGNED _ CERT _ IN _ CHAIN (12) -
V
_ ERR _ UNABLE _ TO _ DECRYPT _ CERT _ SIGNATURE (12) -
V
_ ERR _ UNABLE _ TO _ DECRYPT _ CRL _ SIGNATURE (12) -
V
_ ERR _ UNABLE _ TO _ VERIFY _ LEAF _ SIGNATURE (12) - [] (12)
-
add
_ certificate (12) -
add
_ signatures (12) -
add
_ signer (12) - assign (12)
-
assign
_ defaults (12) -
assign
_ in _ cond (12) - assignable (12)
- bigdecimal (12)
- bind (12)
-
build
_ self _ signed _ cert (12) - call (12)
-
cert
_ chain (12) -
cert
_ chain= (12) - certificates= (12)
-
check
_ signedness (24) - detached (12)
- detached? (12)
-
dsa
_ sign _ asn1 (12) -
dsa
_ verify _ asn1 (12) - encrypt (12)
- extern (12)
-
gem
_ signature (12) -
index
_ signature (12) - issuer (12)
- key (12)
- key= (12)
- kill (24)
-
kill
_ job (6) - list (12)
- massign (12)
- name (12)
- new (72)
-
node
_ assign (12) -
only
_ signed (12) -
only
_ signed= (12) - open (24)
- openssl (12)
- pack (12)
- purpose= (24)
-
rb
_ const _ assign (12) -
rb
_ quad _ unpack (1) -
rb
_ reserved _ word (12) -
rb
_ thread _ signal _ raise (12) -
rb
_ uint _ new (12) -
rubygems
/ commands / cert _ command (12) -
rubygems
/ security (12) - serial (12)
-
sign
_ cert (12) - signal (24)
- signaled? (12)
- signame (12)
-
signature
_ algorithm (36) -
signed
_ time (12) - signers (12)
-
signing
_ key (12) -
signing
_ key= (12) - signm (12)
- signo (12)
- strftime (12)
- struct (12)
- syssign (12)
- sysverify (12)
- trap (48)
- trust= (24)
- union (12)
- verify (48)
-
verify
_ gem (12) -
verify
_ signer (12) -
verify
_ signer= (12) -
write
_ smime (12) - yield (12)
検索結果
先頭5件
-
OpenSSL
:: PKCS7 :: TEXT -> Integer (6.0) -
text/plain タイプの MIME ヘッダーを取り扱います。
...text/plain タイプの MIME ヘッダーを取り扱います。
OpenSSL::PKCS7.sign, OpenSSL::PKCS7.write_smime,
OpenSSL::PKCS7#verify,
OpenSSL::PKCS7.encrypt, OpenSSL::PKCS7#decrypt
で利用可能なフラグです。... -
OpenSSL
:: PKey :: DH (6.0) -
Diffie-Hellman 鍵共有クラス
...Diffie-Hellman 鍵共有クラス
Diffie-Hellman 鍵共有プロトコルは署名ができないため、
OpenSSL::PKey::PKey#sign や OpenSSL::PKey::PKey#verify
を呼び署名や署名の検証を行おうとすると例外
OpenSSL::PKey::PKeyError が発生します。
Diffie-Hellman はこ... -
OpenSSL
:: PKey :: EC # dsa _ verify _ asn1(data , sig) -> bool (6.0) -
公開鍵を用い、署名を ECDSA で検証します。
...要があります。
検証に成功した場合は true を返します。
@param data 署名対象のデータ(文字列)
@param sig 署名データ(文字列)
@raise OpenSSL::PKey::ECError 署名の検証時にエラーが生じた場合に発生します
@see OpenSSL::PKey::EC#dsa_sign_asn1... -
OpenSSL
:: X509 :: Request (6.0) -
X.509 の証明書署名要求(Certificate Signing Request, CSR)を表わす クラスです。
...X.509 の証明書署名要求(Certificate Signing Request, CSR)を表わす
クラスです。
X.509 CSR については 2986 などを参照してください。
=== 例
CSR を生成する例。
require 'openssl'
# ファイルから秘密鍵を読み込む
rsa = OpenSSL::PKey::RSA.new(F......exts = [ factory.create_ext("subjectAltName", "DNS:foo.example.com") ]
asn1exts = OpenSSL::ASN1::Set([OpenSSL::ASN1::Sequence(exts)])
csr.add_attribute(OpenSSL::X509::Attribute.new("extReq", asn1exts))
# 署名
csr.sign(rsa, "sha1")
# PEM 形式で標準出力に出力
puts csr.to_pem... -
OpenSSL
:: X509 :: Request # verify(key) -> bool (6.0) -
署名を検証します。
...には true を、失敗した場合には false を返します。
@param key 検証に利用する公開鍵(OpenSSL::PKey::PKey のサブクラスのインスタンス)
@raise OpenSSL::X509::RequestError 検証時にエラーが生じた場合に発生します
@see OpenSSL::X509::Request#sign... -
openssl (6.0)
-
OpenSSL(https://www.openssl.org/) を Ruby から扱うためのライブラリです。
....serial = 1
cer.issuer = issu
cer.subject = sub
cer.sign(key, digest) # <= 署名するのに使う秘密鍵とハッシュ関数
print cer.to_text
===[a:references] 参考文献
* 5246
* Eric Rescorla. SSL and TLS : Designing and Building Secure Systems.
邦訳, Eric Rescorla...