This section provides details of the fields in the various certificate store human-readable files.
The following table provide details of the file certificate store fields:
Name |
Description |
|
Specifies the certificate label. This label is in UTF-8 format and limited to 64 characters. |
|
The value of this field indicates whether the certificate can be
deleted. |
|
Specifies the certificate format. This is usually set to |
|
Indicates the type of certificate owner. This field has the following
legal values: |
|
Both these fields are used to build certificate chains by looking
for certificates with These fields are optional. If omitted, their values are considered equivalent to auto. For x509 certificates, it is recommended that these fields be omitted or set to auto. For other certificate types, specify an octet string value. |
|
|
|
Indicates the start and end of the application list. An application
list specifies the applications associated with a certificate. Applications
can be specified by UID or by name (in which case they are looked up in |
|
|
|
The value of this field is usually set to |
|
Specifies the name of the file from which the certificate is to be read. If the certificate format is not x509, the contents are treated as a raw block of data. If the format is x509, the file can be either of the following: |
The following table provides information on the SWI certificate store fields. Because the SWI certificate store is a superset of the file certificate store, the following table lists only fields specific to the SWI certificate store.
Name |
Description |
|
Defines a list of capabilities allowed in applications that have the certificate as their trust anchor. Standard capability names or numeric bit numbers can be specified. |
|
The value of this field is usually be set to Note: If the certificate
store is deployed in a device that does not support the feature of updating
ROM files without using SIS stubs, the certificate gets interpreted as |
|
The value of this field must usually be set to Note: The
field is set to |
Important: A SWI certificate store does not have a Deletable
field
because all the SWI certificates are protected from deletion.