Skip to main content

hoike_sign/
lib.rs

1pub mod crl;
2#[cfg(feature = "dogtag-sync")]
3pub mod dogtag_sync;
4pub mod error;
5pub mod generate;
6pub mod keyfile;
7pub mod live;
8pub mod ml_dsa_bridge;
9pub mod orchestrate;
10#[cfg(feature = "pkcs11")]
11pub mod pkcs11;
12pub mod rotation;
13pub mod seal;
14pub mod source;
15pub mod verify;
16
17pub use crl::CrlSource;
18#[cfg(feature = "dogtag-sync")]
19pub use dogtag_sync::{DogtagSyncConfig, DogtagSyncSource};
20pub use error::{Result, SignError};
21pub use generate::datetime_to_epoch;
22pub use generate::{CertIdCompat, GenerationConfig, produce_bundle, produce_dual_bundle};
23pub use keyfile::{demo_ecdsa_p256_key, load_ecdsa_p256_key, load_ml_dsa_key};
24pub use live::{LiveCertStatus, extract_status_from_response, sign_live_response};
25pub use ml_dsa_bridge::{
26    ML_DSA_44_OID, ML_DSA_65_OID, ML_DSA_87_OID, MlDsaSignatureBytes, MlDsaSigner,
27    MlDsaSignerVariant, load_ml_dsa_signer_from_pkcs8_der, ml_dsa_44_signer, ml_dsa_65_signer,
28    ml_dsa_87_signer, ml_dsa_signature_size,
29};
30pub use orchestrate::{
31    COMBINED_PRODUCER_ID, PersistentSources, SignedScope, create_persistent_sources,
32    decode_issuer_key, revoked_serials_for_scope, sign_and_write_all, sign_and_write_scope,
33    sign_ca_scope, write_bundle,
34};
35#[cfg(feature = "pkcs11")]
36pub use pkcs11::{
37    Pkcs11Config, Pkcs11EcdsaSignature, Pkcs11MlDsaSignature, Pkcs11MlDsaSigner,
38    Pkcs11MlDsaSignerBridge, Pkcs11Signer, Pkcs11SignerBridge,
39};
40pub use rotation::{
41    CertInfo, RotationStatus, check_and_log_rotation, check_rotation_needed, format_cert_info,
42    run_rotation_command,
43};
44pub use seal::{SealKey, create_cms_seal, generate_seal_cert, generate_seal_cert_for_key};
45pub use source::{
46    CaIdentity, CertificateStatus, Epoch, RevocationSource, StatusChange, StatusSnapshot,
47};
48pub use verify::verify_ocsp_response_signature;