Sophie

Sophie

distrib > Fedora > 14 > x86_64 > by-pkgid > 5d45b6a06bce14b5c149a8ed0d8febf8 > files > 3

dumpasn1-20100318-2.fc14.src.rpm

# dumpasn1 Object Identifier configuration file, available from
# http://www.cs.auckland.ac.nz/~pgut001/dumpasn1.cfg.  This is read by
# dumpasn1.c and is used to display information on Object Identifiers found in
# ASN.1 objects.  This is merely a list of things that you might conceivably
# find in use somewhere, and should in no way be taken as a guide to which OIDs
# to use - many of these will never been seen in the wild, or should be shot on
# sight if encountered.
#
# The format of this file is as follows:
#
# - All blank lines and lines beginning with a '#' are ignored.
# - OIDs are described by a set of attributes, of which at least the 'OID' and
#   'Description' must be present.  Optional attributes are a 'Comment' and a
#   'Warning' (to indicate that dumpasn1 will display a warning if this OID is
#   encountered).
# - Attributes are listed one per line.  The first attribute should be an 'OID'
#   attribute since this is used to denote the start of a new OID description.
#   The other attributes may be given in any order.
# - Offical attribute names vary widely depending on who's creating them.  In
#	an attempt at avoiding a confusing mass of naming styles, this file aims
#	for consistency by normalising the naming for attributes, however this
#	means that the name used here may not entirely match the actual name.
#
# See the rest of this file for examples of what an OID description should look
# like.

# Deutsche Telekom/Telesec

OID = 0 2 262 1 10
Comment = Deutsche Telekom
Description = Telesec

OID = 0 2 262 1 10 0
Comment = Telesec
Description = extension

OID = 0 2 262 1 10 1
Comment = Telesec
Description = mechanism

OID = 0 2 262 1 10 1 0
Comment = Telesec mechanism
Description = authentication

OID = 0 2 262 1 10 1 0 1
Comment = Telesec authentication
Description = passwordAuthentication

OID = 0 2 262 1 10 1 0 2
Comment = Telesec authentication
Description = protectedPasswordAuthentication

OID = 0 2 262 1 10 1 0 3
Comment = Telesec authentication
Description = oneWayX509Authentication

OID = 0 2 262 1 10 1 0 4
Comment = Telesec authentication
Description = twoWayX509Authentication

OID = 0 2 262 1 10 1 0 5
Comment = Telesec authentication
Description = threeWayX509Authentication

OID = 0 2 262 1 10 1 0 6
Comment = Telesec authentication
Description = oneWayISO9798Authentication

OID = 0 2 262 1 10 1 0 7
Comment = Telesec authentication
Description = twoWayISO9798Authentication

OID = 0 2 262 1 10 1 0 8
Comment = Telesec authentication
Description = telekomAuthentication

OID = 0 2 262 1 10 1 1
Comment = Telesec mechanism
Description = signature

OID = 0 2 262 1 10 1 1 1
Comment = Telesec mechanism
Description = md4WithRSAAndISO9697

OID = 0 2 262 1 10 1 1 2
Comment = Telesec mechanism
Description = md4WithRSAAndTelesecSignatureStandard

OID = 0 2 262 1 10 1 1 3
Comment = Telesec mechanism
Description = md5WithRSAAndISO9697

OID = 0 2 262 1 10 1 1 4
Comment = Telesec mechanism
Description = md5WithRSAAndTelesecSignatureStandard

# PKCS #1 signature with RIPEMD-160
OID = 0 2 262 1 10 1 1 5
Comment = Telesec mechanism
Description = ripemd160WithRSAAndTelekomSignatureStandard

# RIPEMD-160 with raw RSA (ie no padding, just 160 bytes encrypted) signature
OID = 0 2 262 1 10 1 1 9
Comment = Telesec signature
Description = hbciRsaSignature

OID = 0 2 262 1 10 1 2
Comment = Telesec mechanism
Description = encryption

# Specially recommended by the NSA for German use
OID = 0 2 262 1 10 1 2 0
Comment = Telesec encryption
Description = none

OID = 0 2 262 1 10 1 2 1
Comment = Telesec encryption
Description = rsaTelesec

OID = 0 2 262 1 10 1 2 2
Comment = Telesec encryption
Description = des

OID = 0 2 262 1 10 1 2 2 1
Comment = Telesec encryption
Description = desECB

OID = 0 2 262 1 10 1 2 2 2
Comment = Telesec encryption
Description = desCBC

OID = 0 2 262 1 10 1 2 2 3
Comment = Telesec encryption
Description = desOFB

OID = 0 2 262 1 10 1 2 2 4
Comment = Telesec encryption
Description = desCFB8

OID = 0 2 262 1 10 1 2 2 5
Comment = Telesec encryption
Description = desCFB64

OID = 0 2 262 1 10 1 2 3
Comment = Telesec encryption
Description = des3

OID = 0 2 262 1 10 1 2 3 1
Comment = Telesec encryption
Description = des3ECB

OID = 0 2 262 1 10 1 2 3 2
Comment = Telesec encryption
Description = des3CBC

OID = 0 2 262 1 10 1 2 3 3
Comment = Telesec encryption
Description = des3OFB

OID = 0 2 262 1 10 1 2 3 4
Comment = Telesec encryption
Description = des3CFB8

OID = 0 2 262 1 10 1 2 3 5
Comment = Telesec encryption
Description = des3CFB64

OID = 0 2 262 1 10 1 2 4
Comment = Telesec encryption
Description = magenta

OID = 0 2 262 1 10 1 2 5
Comment = Telesec encryption
Description = idea

OID = 0 2 262 1 10 1 2 5 1
Comment = Telesec encryption
Description = ideaECB

OID = 0 2 262 1 10 1 2 5 2
Comment = Telesec encryption
Description = ideaCBC

OID = 0 2 262 1 10 1 2 5 3
Comment = Telesec encryption
Description = ideaOFB

OID = 0 2 262 1 10 1 2 5 4
Comment = Telesec encryption
Description = ideaCFB8

OID = 0 2 262 1 10 1 2 5 5
Comment = Telesec encryption
Description = ideaCFB64

OID = 0 2 262 1 10 1 3
Comment = Telesec mechanism
Description = oneWayFunction

OID = 0 2 262 1 10 1 3 1
Comment = Telesec one-way function
Description = md4

OID = 0 2 262 1 10 1 3 2
Comment = Telesec one-way function
Description = md5

OID = 0 2 262 1 10 1 3 3
Comment = Telesec one-way function
Description = sqModNX509

OID = 0 2 262 1 10 1 3 4
Comment = Telesec one-way function
Description = sqModNISO

OID = 0 2 262 1 10 1 3 5
Comment = Telesec one-way function
Description = ripemd128

OID = 0 2 262 1 10 1 3 6
Comment = Telesec one-way function
Description = hashUsingBlockCipher

OID = 0 2 262 1 10 1 3 7
Comment = Telesec one-way function
Description = mac

OID = 0 2 262 1 10 1 3 8
Comment = Telesec one-way function
Description = ripemd160

OID = 0 2 262 1 10 1 4
Comment = Telesec mechanism
Description = fecFunction

OID = 0 2 262 1 10 1 4 1
Comment = Telesec mechanism
Description = reedSolomon

OID = 0 2 262 1 10 2
Comment = Telesec
Description = module

OID = 0 2 262 1 10 2 0
Comment = Telesec module
Description = algorithms

OID = 0 2 262 1 10 2 1
Comment = Telesec module
Description = attributeTypes

OID = 0 2 262 1 10 2 2
Comment = Telesec module
Description = certificateTypes

OID = 0 2 262 1 10 2 3
Comment = Telesec module
Description = messageTypes

OID = 0 2 262 1 10 2 4
Comment = Telesec module
Description = plProtocol

OID = 0 2 262 1 10 2 5
Comment = Telesec module
Description = smeAndComponentsOfSme

OID = 0 2 262 1 10 2 6
Comment = Telesec module
Description = fec

OID = 0 2 262 1 10 2 7
Comment = Telesec module
Description = usefulDefinitions

OID = 0 2 262 1 10 2 8
Comment = Telesec module
Description = stefiles

OID = 0 2 262 1 10 2 9
Comment = Telesec module
Description = sadmib

OID = 0 2 262 1 10 2 10
Comment = Telesec module
Description = electronicOrder

OID = 0 2 262 1 10 2 11
Comment = Telesec module
Description = telesecTtpAsymmetricApplication

OID = 0 2 262 1 10 2 12
Comment = Telesec module
Description = telesecTtpBasisApplication

OID = 0 2 262 1 10 2 13
Comment = Telesec module
Description = telesecTtpMessages

OID = 0 2 262 1 10 2 14
Comment = Telesec module
Description = telesecTtpTimeStampApplication

OID = 0 2 262 1 10 3
Comment = Telesec
Description = objectClass

OID = 0 2 262 1 10 3 0
Comment = Telesec object class
Description = telesecOtherName

OID = 0 2 262 1 10 3 1
Comment = Telesec object class
Description = directory

OID = 0 2 262 1 10 3 2
Comment = Telesec object class
Description = directoryType

OID = 0 2 262 1 10 3 3
Comment = Telesec object class
Description = directoryGroup

OID = 0 2 262 1 10 3 4
Comment = Telesec object class
Description = directoryUser

OID = 0 2 262 1 10 3 5
Comment = Telesec object class
Description = symmetricKeyEntry

OID = 0 2 262 1 10 4
Comment = Telesec
Description = package

OID = 0 2 262 1 10 5
Comment = Telesec
Description = parameter

OID = 0 2 262 1 10 6
Comment = Telesec
Description = nameBinding

OID = 0 2 262 1 10 7
Comment = Telesec
Description = attribute

OID = 0 2 262 1 10 7 0
Comment = Telesec attribute
Description = applicationGroupIdentifier

OID = 0 2 262 1 10 7 1
Comment = Telesec attribute
Description = certificateType

OID = 0 2 262 1 10 7 2
Comment = Telesec attribute
Description = telesecCertificate

OID = 0 2 262 1 10 7 3
Comment = Telesec attribute
Description = certificateNumber

OID = 0 2 262 1 10 7 4
Comment = Telesec attribute
Description = certificateRevocationList

OID = 0 2 262 1 10 7 5
Comment = Telesec attribute
Description = creationDate

OID = 0 2 262 1 10 7 6
Comment = Telesec attribute
Description = issuer

OID = 0 2 262 1 10 7 7
Comment = Telesec attribute
Description = namingAuthority

OID = 0 2 262 1 10 7 8
Comment = Telesec attribute
Description = publicKeyDirectory

OID = 0 2 262 1 10 7 9
Comment = Telesec attribute
Description = securityDomain

OID = 0 2 262 1 10 7 10
Comment = Telesec attribute
Description = subject

OID = 0 2 262 1 10 7 11
Comment = Telesec attribute
Description = timeOfRevocation

OID = 0 2 262 1 10 7 12
Comment = Telesec attribute
Description = userGroupReference

OID = 0 2 262 1 10 7 13
Comment = Telesec attribute
Description = validity

OID = 0 2 262 1 10 7 14
Comment = Telesec attribute
Description = zert93

# It really is called that
OID = 0 2 262 1 10 7 15
Comment = Telesec attribute
Description = securityMessEnv

OID = 0 2 262 1 10 7 16
Comment = Telesec attribute
Description = anonymizedPublicKeyDirectory

OID = 0 2 262 1 10 7 17
Comment = Telesec attribute
Description = telesecGivenName

OID = 0 2 262 1 10 7 18
Comment = Telesec attribute
Description = nameAdditions

OID = 0 2 262 1 10 7 19
Comment = Telesec attribute
Description = telesecPostalCode

OID = 0 2 262 1 10 7 20
Comment = Telesec attribute
Description = nameDistinguisher

OID = 0 2 262 1 10 7 21
Comment = Telesec attribute
Description = telesecCertificateList

OID = 0 2 262 1 10 7 22
Comment = Telesec attribute
Description = teletrustCertificateList

OID = 0 2 262 1 10 7 23
Comment = Telesec attribute
Description = x509CertificateList

OID = 0 2 262 1 10 7 24
Comment = Telesec attribute
Description = timeOfIssue

OID = 0 2 262 1 10 7 25
Comment = Telesec attribute
Description = physicalCardNumber

OID = 0 2 262 1 10 7 26
Comment = Telesec attribute
Description = fileType

OID = 0 2 262 1 10 7 27
Comment = Telesec attribute
Description = ctlFileIsArchive

OID = 0 2 262 1 10 7 28
Comment = Telesec attribute
Description = emailAddress

OID = 0 2 262 1 10 7 29
Comment = Telesec attribute
Description = certificateTemplateList

OID = 0 2 262 1 10 7 30
Comment = Telesec attribute
Description = directoryName

OID = 0 2 262 1 10 7 31
Comment = Telesec attribute
Description = directoryTypeName

OID = 0 2 262 1 10 7 32
Comment = Telesec attribute
Description = directoryGroupName

OID = 0 2 262 1 10 7 33
Comment = Telesec attribute
Description = directoryUserName

OID = 0 2 262 1 10 7 34
Comment = Telesec attribute
Description = revocationFlag

OID = 0 2 262 1 10 7 35
Comment = Telesec attribute
Description = symmetricKeyEntryName

OID = 0 2 262 1 10 7 36
Comment = Telesec attribute
Description = glNumber

OID = 0 2 262 1 10 7 37
Comment = Telesec attribute
Description = goNumber

OID = 0 2 262 1 10 7 38
Comment = Telesec attribute
Description = gKeyData

OID = 0 2 262 1 10 7 39
Comment = Telesec attribute
Description = zKeyData

OID = 0 2 262 1 10 7 40
Comment = Telesec attribute
Description = ktKeyData

OID = 0 2 262 1 10 7 41
Comment = Telesec attribute
Description = ktKeyNumber

OID = 0 2 262 1 10 7 51
Comment = Telesec attribute
Description = timeOfRevocationGen

OID = 0 2 262 1 10 7 52
Comment = Telesec attribute
Description = liabilityText

OID = 0 2 262 1 10 8
Comment = Telesec
Description = attributeGroup

OID = 0 2 262 1 10 9
Comment = Telesec
Description = action

OID = 0 2 262 1 10 10
Comment = Telesec
Description = notification

OID = 0 2 262 1 10 11
Comment = Telesec
Description = snmp-mibs

OID = 0 2 262 1 10 11 1
Comment = Telesec SNMP MIBs
Description = securityApplication

OID = 0 2 262 1 10 12
Comment = Telesec
Description = certAndCrlExtensionDefinitions

# ISIS-MTT SigG-Profile: Indicates that an attribute certificate
# exists, which limits the usability of this public key certificate.
OID = 0 2 262 1 10 12 0
Comment = Telesec cert/CRL extension
Description = liabilityLimitationFlag

OID = 0 2 262 1 10 12 1
Comment = Telesec cert/CRL extension
Description = telesecCertIdExt

OID = 0 2 262 1 10 12 2
Comment = Telesec cert/CRL extension
Description = Telesec policyIdentifier

OID = 0 2 262 1 10 12 3
Comment = Telesec cert/CRL extension
Description = telesecPolicyQualifierID

OID = 0 2 262 1 10 12 4
Comment = Telesec cert/CRL extension
Description = telesecCRLFilteredExt

OID = 0 2 262 1 10 12 5
Comment = Telesec cert/CRL extension
Description = telesecCRLFilterExt

OID = 0 2 262 1 10 12 6
Comment = Telesec cert/CRL extension
Description = telesecNamingAuthorityExt

# BSI e-Pass (TR-03110/TR-03111).  TA = Terminal Authentication (Passport
# PKI with monthly global cert updates), CA = Chip Authentication
# (Auth using static [EC]DH).

OID = 0 4 0 127 0 7
Comment = BSI TR-03110/TR-03111
Description = bsi

OID = 0 4 0 127 0 7 1
Comment = BSI TR-03111
Description = bsiEcc

OID = 0 4 0 127 0 7 1 1
Comment = BSI TR-03111
Description = bsifieldType

OID = 0 4 0 127 0 7 1 1 1
Comment = BSI TR-03111
Description = bsiPrimeField

OID = 0 4 0 127 0 7 1 1 2
Comment = BSI TR-03111
Description = bsiCharacteristicTwoField

OID = 0 4 0 127 0 7 1 1 2 3
Comment = BSI TR-03111
Description = bsiCharacteristicTwoBasis

OID = 0 4 0 127 0 7 1 1 2 3 1
Comment = BSI TR-03111
Description = bsiGnBasis

OID = 0 4 0 127 0 7 1 1 2 3 2
Comment = BSI TR-03111
Description = bsiTpBasis

OID = 0 4 0 127 0 7 1 1 2 3 3
Comment = BSI TR-03111
Description = bsiPpBasis

OID = 0 4 0 127 0 7 1 1 4 1
Comment = BSI TR-03111
Description = bsiEcdsaSignatures

OID = 0 4 0 127 0 7 1 1 4 1 1
Comment = BSI TR-03111
Description = bsiEcdsaWithSHA1

OID = 0 4 0 127 0 7 1 1 4 1 2
Comment = BSI TR-03111
Description = bsiEcdsaWithSHA224

OID = 0 4 0 127 0 7 1 1 4 1 3
Comment = BSI TR-03111
Description = bsiEcdsaWithSHA256

OID = 0 4 0 127 0 7 1 1 4 1 4
Comment = BSI TR-03111
Description = bsiEcdsaWithSHA384

OID = 0 4 0 127 0 7 1 1 4 1 5
Comment = BSI TR-03111
Description = bsiEcdsaWithSHA512

OID = 0 4 0 127 0 7 1 1 4 1 6
Comment = BSI TR-03111
Description = bsiEcdsaWithRIPEMD160

OID = 0 4 0 127 0 7 1 2
Comment = BSI TR-03111
Description = bsiEcKeyType

OID = 0 4 0 127 0 7 1 2 1
Comment = BSI TR-03111
Description = bsiEcPublicKey

OID = 0 4 0 127 0 7 1 5 1
Comment = BSI TR-03111
Description = bsiKaeg

OID = 0 4 0 127 0 7 1 5 1 1
Comment = BSI TR-03111
Description = bsiKaegWithX963KDF

OID = 0 4 0 127 0 7 1 5 1 2
Comment = BSI TR-03111
Description = bsiKaegWith3DESKDF

OID = 0 4 0 127 0 7 2 2 1
Comment = BSI TR-03110. Formerly known as bsiCA, now moved to ...2.2.3.x
Description = bsiPK

OID = 0 4 0 127 0 7 2 2 1 1
Comment = BSI TR-03110. Formerly known as bsiCA_DH, now moved to ...2.2.3.x
Description = bsiPK_DH

OID = 0 4 0 127 0 7 2 2 1 2
Comment = BSI TR-03110. Formerly known as bsiCA_ECDH, now moved to ...2.2.3.x
Description = bsiPK_ECDH

OID = 0 4 0 127 0 7 2 2 2
Comment = BSI TR-03110
Description = bsiTA

OID = 0 4 0 127 0 7 2 2 2 1
Comment = BSI TR-03110
Description = bsiTA_RSA

OID = 0 4 0 127 0 7 2 2 2 1 1
Comment = BSI TR-03110
Description = bsiTA_RSAv1_5_SHA1

OID = 0 4 0 127 0 7 2 2 2 1 2
Comment = BSI TR-03110
Description = bsiTA_RSAv1_5_SHA256

OID = 0 4 0 127 0 7 2 2 2 1 3
Comment = BSI TR-03110
Description = bsiTA_RSAPSS_SHA1

OID = 0 4 0 127 0 7 2 2 2 1 4
Comment = BSI TR-03110
Description = bsiTA_RSAPSS_SHA256

OID = 0 4 0 127 0 7 2 2 2 2
Comment = BSI TR-03110
Description = bsiTA_ECDSA

OID = 0 4 0 127 0 7 2 2 2 2 1
Comment = BSI TR-03110
Description = bsiTA_ECDSA_SHA1

OID = 0 4 0 127 0 7 2 2 2 2 2
Comment = BSI TR-03110
Description = bsiTA_ECDSA_SHA224

OID = 0 4 0 127 0 7 2 2 2 2 3
Comment = BSI TR-03110
Description = bsiTA_ECDSA_SHA256

OID = 0 4 0 127 0 7 2 2 3
Comment = BSI TR-03110
Description = bsiCA

OID = 0 4 0 127 0 7 2 2 3 1
Comment = BSI TR-03110
Description = bsiCA_DH

OID = 0 4 0 127 0 7 2 2 3 2
Comment = BSI TR-03110
Description = bsiCA_ECDH

OID = 0 4 0 127 0 7 3 1 2 1
Comment = BSI TR-03110
Description = bsiRoleEAC

# ETSI TS 101 862 V1.3.3 (2006-01), Qualified certificate profile

OID = 0 4 0 1862
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcsProfile

OID = 0 4 0 1862 1
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcs

OID = 0 4 0 1862 1 1
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcsCompliance

OID = 0 4 0 1862 1 2
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcsLimitValue

OID = 0 4 0 1862 1 3
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcsRetentionPeriod

OID = 0 4 0 1862 1 4
Comment = ETSI TS 101 862 qualified certificates
Description = etsiQcsQcSSCD

# RFC 1274 (X.500 attribute collection from the UK, thus the weird OID).

OID = 0 9 2342 19200300 100 1 1
Comment = Some oddball X.500 attribute collection
Description = userID

OID = 0 9 2342 19200300 100 1 3
Comment = Some oddball X.500 attribute collection
Description = rfc822Mailbox

# RFC 2247, How to Kludge an FQDN as a DN (or words to that effect), another
# fine product of the UK (also present in the above mentioned RFC 1274).

OID = 0 9 2342 19200300 100 1 25
Comment = Men are from Mars, this OID is from Pluto
Description = domainComponent

# ISO standards

OID = 1 0 10118 3 0 49
Comment = ISO 10118-3 hash function
Description = ripemd160

OID = 1 0 10118 3 0 50
Comment = ISO 10118-3 hash function
Description = ripemd128

OID = 1 0 10118 3 0 55
Comment = ISO 10118-3 hash function
Description = whirlpool

# Australian Government

OID = 1 2 36 1 333 1
Comment = Australian Government corporate taxpayer ID
Description = australianBusinessNumber

# Certificates Australia (Australia use the corporate tax identifier (ABN)
# as de facto unique identifiers in OIDs, thus the bizarre fourth value.
# See also Signet and other Australian corporate OIDs).

OID = 1 2 36 75878867 1 100 1 1
Comment = Certificates Australia CA
Description = Certificates Australia policyIdentifier

# Signet

OID = 1 2 36 68980861 1 1 2
Comment = Signet CA
Description = Signet personal

OID = 1 2 36 68980861 1 1 3
Comment = Signet CA
Description = Signet business

OID = 1 2 36 68980861 1 1 4
Comment = Signet CA
Description = Signet legal

OID = 1 2 36 68980861 1 1 10
Comment = Signet CA
Description = Signet pilot

OID = 1 2 36 68980861 1 1 11
Comment = Signet CA
Description = Signet intraNet

OID = 1 2 36 68980861 1 1 20
Comment = Signet CA
Description = Signet policyIdentifier

# Mitsubishi

OID = 1 2 392 200011 61 1 1 1
Comment = Mitsubishi security algorithm
Description = symmetric-encryption-algorithm

OID = 1 2 392 200011 61 1 1 1 1
Comment = Mitsubishi security algorithm
Description = misty1-cbc

# Korean Information Security Agency

OID = 1 2 410 200004 1 4
Comment = SEED algorithm, CBC mode
Description = seedCBC

OID = 1 2 410 200004 1 7
Comment = SEED algorithm, MAC mode
Description = seedMAC

OID = 1 2 410 200004 1 15
Comment = SEED algorithm, PBE key derivation
Description = pbeWithSHA1AndSEED-CBC

# SEIS

OID = 1 2 752 34 1
Comment = SEIS Project
Description = seis-cp

OID = 1 2 752 34 1 1
Comment = SEIS Project certificate policies
Description = SEIS high-assurance policyIdentifier

OID = 1 2 752 34 1 2
Comment = SEIS Project certificate policies
Description = SEIS GAK policyIdentifier

OID = 1 2 752 34 2
Comment = SEIS Project
Description = SEIS pe

OID = 1 2 752 34 3
Comment = SEIS Project
Description = SEIS at

OID = 1 2 752 34 3 1
Comment = SEIS Project attribute
Description = SEIS at-personalIdentifier

# ANSI X9.57

OID = 1 2 840 10040 1
Comment = ANSI X9.57
Description = module

OID = 1 2 840 10040 1 1
Comment = ANSI X9.57 module
Description = x9f1-cert-mgmt

OID = 1 2 840 10040 2
Comment = ANSI X9.57
Description = holdinstruction

OID = 1 2 840 10040 2 1
Comment = ANSI X9.57 hold instruction
Description = holdinstruction-none

OID = 1 2 840 10040 2 2
Comment = ANSI X9.57 hold instruction
Description = callissuer

OID = 1 2 840 10040 2 3
Comment = ANSI X9.57 hold instruction
Description = reject

OID = 1 2 840 10040 2 4
Comment = ANSI X9.57 hold instruction
Description = pickupToken

OID = 1 2 840 10040 3
Comment = ANSI X9.57
Description = attribute

OID = 1 2 840 10040 3 1
Comment = ANSI X9.57 attribute
Description = countersignature

OID = 1 2 840 10040 3 2
Comment = ANSI X9.57 attribute
Description = attribute-cert

OID = 1 2 840 10040 4
Comment = ANSI X9.57
Description = algorithm

OID = 1 2 840 10040 4 1
Comment = ANSI X9.57 algorithm
Description = dsa

OID = 1 2 840 10040 4 2
Comment = ANSI X9.57 algorithm
Description = dsa-match

OID = 1 2 840 10040 4 3
Comment = ANSI X9.57 algorithm
Description = dsaWithSha1

# ANSI X9.62

OID = 1 2 840 10045 1
Comment = ANSI X9.62. This OID is also assigned as ecdsa-with-SHA1
Description = fieldType

OID = 1 2 840 10045 1 1
Comment = ANSI X9.62 field type
Description = prime-field

OID = 1 2 840 10045 1 2
Comment = ANSI X9.62 field type
Description = characteristic-two-field

OID = 1 2 840 10045 1 2 3
Comment = ANSI X9.62 field type
Description = characteristic-two-basis

OID = 1 2 840 10045 1 2 3 1
Comment = ANSI X9.62 field basis
Description = onBasis

OID = 1 2 840 10045 1 2 3 2
Comment = ANSI X9.62 field basis
Description = tpBasis

OID = 1 2 840 10045 1 2 3 3
Comment = ANSI X9.62 field basis
Description = ppBasis

# The definition for the following OID is somewhat confused, and is given as
# keyType, publicKeyType, and public-key-type, all within 4 lines of text.
# ecPublicKey is defined using the ID publicKeyType, so this is what's used
# here.
OID = 1 2 840 10045 2
Comment = ANSI X9.62
Description = publicKeyType

OID = 1 2 840 10045 2 1
Comment = ANSI X9.62 public key type
Description = ecPublicKey

OID = 1 2 840 10045 3 0 1
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb163v1

OID = 1 2 840 10045 3 0 2
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb163v2

OID = 1 2 840 10045 3 0 3
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb163v3

OID = 1 2 840 10045 3 0 5
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb191v1

OID = 1 2 840 10045 3 0 6
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb191v2

OID = 1 2 840 10045 3 0 7
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb191v3

OID = 1 2 840 10045 3 0 10
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb208w1

OID = 1 2 840 10045 3 0 11
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb239v1

OID = 1 2 840 10045 3 0 12
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb239v2

OID = 1 2 840 10045 3 0 13
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb239v3

OID = 1 2 840 10045 3 0 16
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb272w1

OID = 1 2 840 10045 3 0 18
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb359v1

OID = 1 2 840 10045 3 0 19
Comment = ANSI X9.62 named elliptic curve
Description = c2pnb368w1

OID = 1 2 840 10045 3 0 20
Comment = ANSI X9.62 named elliptic curve
Description = c2tnb431r1

OID = 1 2 840 10045 3 1 1
Comment = ANSI X9.62 named elliptic curve
Description = ansiX9p192r1

OID = 1 2 840 10045 3 1 1 1
Comment = ANSI X9.62 named elliptic curve
Description = prime192v1

OID = 1 2 840 10045 3 1 1 2
Comment = ANSI X9.62 named elliptic curve
Description = prime192v2

OID = 1 2 840 10045 3 1 1 3
Comment = ANSI X9.62 named elliptic curve
Description = prime192v3

OID = 1 2 840 10045 3 1 1 4
Comment = ANSI X9.62 named elliptic curve
Description = prime239v1

OID = 1 2 840 10045 3 1 1 5
Comment = ANSI X9.62 named elliptic curve
Description = prime239v2

OID = 1 2 840 10045 3 1 1 6
Comment = ANSI X9.62 named elliptic curve
Description = prime239v3

OID = 1 2 840 10045 3 1 1 7
Comment = ANSI X9.62 named elliptic curve
Description = prime256v1

OID = 1 2 840 10045 3 1 7
Comment = ANSI X9.62 named elliptic curve
Description = ansiX9p256r1

OID = 1 2 840 10045 4 1
Comment = ANSI X9.62 ECDSA algorithm with SHA1
Description = ecdsaWithSHA1

OID = 1 2 840 10045 4 2
Comment = ANSI X9.62 ECDSA algorithm with Recommended
Description = ecdsaWithRecommended

OID = 1 2 840 10045 4 3
Comment = ANSI X9.62 ECDSA algorithm with Specified
Description = ecdsaWithSpecified

OID = 1 2 840 10045 4 3 1
Comment = ANSI X9.62 ECDSA algorithm with SHA224
Description = ecdsaWithSHA224

OID = 1 2 840 10045 4 3 2
Comment = ANSI X9.62 ECDSA algorithm with SHA256
Description = ecdsaWithSHA256

OID = 1 2 840 10045 4 3 3
Comment = ANSI X9.62 ECDSA algorithm with SHA384
Description = ecdsaWithSHA384

OID = 1 2 840 10045 4 3 4
Comment = ANSI X9.62 ECDSA algorithm with SHA512
Description = ecdsaWithSHA512

# ANSI X9.42

OID = 1 2 840 10046 1
Comment = ANSI X9.42
Description = fieldType

OID = 1 2 840 10046 1 1
Comment = ANSI X9.42 field type
Description = gf-prime

OID = 1 2 840 10046 2
Comment = ANSI X9.42
Description = numberType

OID = 1 2 840 10046 2 1
Comment = ANSI X9.42 number type
Description = dhPublicKey

OID = 1 2 840 10046 3
Comment = ANSI X9.42
Description = scheme

OID = 1 2 840 10046 3 1
Comment = ANSI X9.42 scheme
Description = dhStatic

OID = 1 2 840 10046 3 2
Comment = ANSI X9.42 scheme
Description = dhEphem

OID = 1 2 840 10046 3 3
Comment = ANSI X9.42 scheme
Description = dhHybrid1

OID = 1 2 840 10046 3 4
Comment = ANSI X9.42 scheme
Description = dhHybrid2

OID = 1 2 840 10046 3 5
Comment = ANSI X9.42 scheme
Description = mqv2

OID = 1 2 840 10046 3 6
Comment = ANSI X9.42 scheme
Description = mqv1

# ASTM 31.20

OID = 1 2 840 10065 2 2
Comment = ASTM 31.20
Description = ?

OID = 1 2 840 10065 2 3
Comment = ASTM 31.20
Description = healthcareLicense

OID = 1 2 840 10065 2 3 1 1
Comment = ASTM 31.20 healthcare license type
Description = license?

# Nortel Secure Networks/Entrust

OID = 1 2 840 113533 7
Description = nsn

OID = 1 2 840 113533 7 65
Description = nsn-ce

OID = 1 2 840 113533 7 65 0
Comment = Nortel Secure Networks ce
Description = entrustVersInfo

OID = 1 2 840 113533 7 66
Description = nsn-alg

OID = 1 2 840 113533 7 66 3
Comment = Nortel Secure Networks alg
Description = cast3CBC

OID = 1 2 840 113533 7 66 10
Comment = Nortel Secure Networks alg
Description = cast5CBC

OID = 1 2 840 113533 7 66 11
Comment = Nortel Secure Networks alg
Description = cast5MAC

OID = 1 2 840 113533 7 66 12
Comment = Nortel Secure Networks alg
Description = pbeWithMD5AndCAST5-CBC

OID = 1 2 840 113533 7 66 13
Comment = Nortel Secure Networks alg
Description = passwordBasedMac

OID = 1 2 840 113533 7 67
Description = nsn-oc

OID = 1 2 840 113533 7 67 0
Comment = Nortel Secure Networks oc
Description = entrustUser

OID = 1 2 840 113533 7 68
Description = nsn-at

OID = 1 2 840 113533 7 68 0
Comment = Nortel Secure Networks at
Description = entrustCAInfo

OID = 1 2 840 113533 7 68 10
Comment = Nortel Secure Networks at
Description = attributeCertificate

# PKCS #1

OID = 1 2 840 113549 1 1
Description = pkcs-1

OID = 1 2 840 113549 1 1 1
Comment = PKCS #1
Description = rsaEncryption

OID = 1 2 840 113549 1 1 2
Comment = PKCS #1
Description = md2withRSAEncryption

OID = 1 2 840 113549 1 1 3
Comment = PKCS #1
Description = md4withRSAEncryption

OID = 1 2 840 113549 1 1 4
Comment = PKCS #1
Description = md5withRSAEncryption

OID = 1 2 840 113549 1 1 5
Comment = PKCS #1
Description = sha1withRSAEncryption

OID = 1 2 840 113549 1 1 7
Comment = PKCS #1
Description = rsaOAEP

# This is also used with PSS so it's given the more general label 'pkcs1-XXX'
# rather than 'rsaOAEP-XXX'.
OID = 1 2 840 113549 1 1 8
Comment = PKCS #1
Description = pkcs1-MGF

OID = 1 2 840 113549 1 1 9
Comment = PKCS #1
Description = rsaOAEP-pSpecified

OID = 1 2 840 113549 1 1 10
Comment = PKCS #1
Description = rsaPSS

OID = 1 2 840 113549 1 1 11
Comment = PKCS #1
Description = sha256WithRSAEncryption

OID = 1 2 840 113549 1 1 12
Comment = PKCS #1
Description = sha384WithRSAEncryption

OID = 1 2 840 113549 1 1 13
Comment = PKCS #1
Description = sha512WithRSAEncryption

OID = 1 2 840 113549 1 1 14
Comment = PKCS #1
Description = sha224WithRSAEncryption

# There is some confusion over the identity of the following OID.  The OAEP
# one is more recent but independant vendors have already used the RIPEMD
# one, however it's likely that the SET usage will claim to be more
# authoritative so we report it as that.
OID = 1 2 840 113549 1 1 6
Comment = PKCS #1. This OID may also be assigned as ripemd160WithRSAEncryption
Description = rsaOAEPEncryptionSET
# ripemd160WithRSAEncryption (1 2 840 113549 1 1 6)

# BSAFE/PKCS #2 (obsolete)

OID = 1 2 840 113549 1 2
Comment = Obsolete BSAFE OID
Description = bsafeRsaEncr
Warning

# PKCS #3

OID = 1 2 840 113549 1 3
Description = pkcs-3

OID = 1 2 840 113549 1 3 1
Comment = PKCS #3
Description = dhKeyAgreement

# PKCS #5

OID = 1 2 840 113549 1 5
Description = pkcs-5

OID = 1 2 840 113549 1 5 1
Comment = PKCS #5
Description = pbeWithMD2AndDES-CBC

OID = 1 2 840 113549 1 5 3
Comment = PKCS #5
Description = pbeWithMD5AndDES-CBC

OID = 1 2 840 113549 1 5 4
Comment = PKCS #5
Description = pbeWithMD2AndRC2-CBC

OID = 1 2 840 113549 1 5 6
Comment = PKCS #5
Description = pbeWithMD5AndRC2-CBC

OID = 1 2 840 113549 1 5 9
Comment = PKCS #5, used in BSAFE only
Description = pbeWithMD5AndXOR
Warning

OID = 1 2 840 113549 1 5 10
Comment = PKCS #5
Description = pbeWithSHAAndDES-CBC

OID = 1 2 840 113549 1 5 12
Comment = PKCS #5 v2.0
Description = pkcs5PBKDF2

OID = 1 2 840 113549 1 5 13
Comment = PKCS #5 v2.0
Description = pkcs5PBES2

OID = 1 2 840 113549 1 5 14
Comment = PKCS #5 v2.0
Description = pkcs5PBMAC1

# PKCS #7

OID = 1 2 840 113549 1 7
Description = pkcs-7

OID = 1 2 840 113549 1 7 1
Comment = PKCS #7
Description = data

OID = 1 2 840 113549 1 7 2
Comment = PKCS #7
Description = signedData

OID = 1 2 840 113549 1 7 3
Comment = PKCS #7
Description = envelopedData

OID = 1 2 840 113549 1 7 4
Comment = PKCS #7
Description = signedAndEnvelopedData

OID = 1 2 840 113549 1 7 5
Comment = PKCS #7
Description = digestedData

OID = 1 2 840 113549 1 7 6
Comment = PKCS #7
Description = encryptedData

OID = 1 2 840 113549 1 7 7
Comment = PKCS #7 experimental
Description = dataWithAttributes
Warning

OID = 1 2 840 113549 1 7 8
Comment = PKCS #7 experimental
Description = encryptedPrivateKeyInfo
Warning

# PKCS #9

OID = 1 2 840 113549 1 9
Description = pkcs-9

OID = 1 2 840 113549 1 9 1
Comment = PKCS #9. Deprecated, use an altName extension instead
Description = emailAddress

OID = 1 2 840 113549 1 9 2
Comment = PKCS #9
Description = unstructuredName

OID = 1 2 840 113549 1 9 3
Comment = PKCS #9
Description = contentType

OID = 1 2 840 113549 1 9 4
Comment = PKCS #9
Description = messageDigest

OID = 1 2 840 113549 1 9 5
Comment = PKCS #9
Description = signingTime

OID = 1 2 840 113549 1 9 6
Comment = PKCS #9
Description = countersignature

OID = 1 2 840 113549 1 9 7
Comment = PKCS #9
Description = challengePassword

OID = 1 2 840 113549 1 9 8
Comment = PKCS #9
Description = unstructuredAddress

OID = 1 2 840 113549 1 9 9
Comment = PKCS #9
Description = extendedCertificateAttributes

OID = 1 2 840 113549 1 9 10
Comment = PKCS #9 experimental
Description = issuerAndSerialNumber
Warning

OID = 1 2 840 113549 1 9 11
Comment = PKCS #9 experimental
Description = passwordCheck
Warning

OID = 1 2 840 113549 1 9 12
Comment = PKCS #9 experimental
Description = publicKey
Warning

OID = 1 2 840 113549 1 9 13
Comment = PKCS #9
Description = signingDescription

OID = 1 2 840 113549 1 9 14
Comment = PKCS #9 via CRMF
Description = extensionRequest

# PKCS #9 for use with S/MIME

OID = 1 2 840 113549 1 9 15
Comment = PKCS #9. This OID was formerly assigned as symmetricCapabilities, then reassigned as SMIMECapabilities, then renamed to the current name
Description = sMIMECapabilities

OID = 1 2 840 113549 1 9 15 1
Comment = sMIMECapabilities
Description = preferSignedData

OID = 1 2 840 113549 1 9 15 2
Comment = sMIMECapabilities
Description = canNotDecryptAny

OID = 1 2 840 113549 1 9 15 3
Comment = sMIMECapabilities. Deprecated, use (1 2 840 113549 1 9 16 2 1) instead
Description = receiptRequest
Warning

OID = 1 2 840 113549 1 9 15 4
Comment = sMIMECapabilities. Deprecated, use (1 2 840 113549 1 9 16 1 1) instead
Description = receipt
Warning

OID = 1 2 840 113549 1 9 15 5
Comment = sMIMECapabilities. Deprecated, use (1 2 840 113549 1 9 16 2 4) instead
Description = contentHints
Warning

OID = 1 2 840 113549 1 9 15 6
Comment = sMIMECapabilities. Deprecated, use (1 2 840 113549 1 9 16 2 3) instead
Description = mlExpansionHistory
Warning

OID = 1 2 840 113549 1 9 16
Comment = PKCS #9
Description = id-sMIME

OID = 1 2 840 113549 1 9 16 0
Comment = id-sMIME
Description = id-mod

OID = 1 2 840 113549 1 9 16 0 1
Comment = S/MIME Modules
Description = id-mod-cms

OID = 1 2 840 113549 1 9 16 0 2
Comment = S/MIME Modules
Description = id-mod-ess

OID = 1 2 840 113549 1 9 16 0 3
Comment = S/MIME Modules
Description = id-mod-oid

OID = 1 2 840 113549 1 9 16 0 4
Comment = S/MIME Modules
Description = id-mod-msg-v3

OID = 1 2 840 113549 1 9 16 0 5
Comment = S/MIME Modules
Description = id-mod-ets-eSignature-88

OID = 1 2 840 113549 1 9 16 0 6
Comment = S/MIME Modules
Description = id-mod-ets-eSignature-97

OID = 1 2 840 113549 1 9 16 0 7
Comment = S/MIME Modules
Description = id-mod-ets-eSigPolicy-88

OID = 1 2 840 113549 1 9 16 0 8
Comment = S/MIME Modules
Description = id-mod-ets-eSigPolicy-88

# S/MIME content types

OID = 1 2 840 113549 1 9 16 1
Comment = S/MIME
Description = contentType

OID = 1 2 840 113549 1 9 16 1 1
Comment = S/MIME Content Types
Description = receipt

OID = 1 2 840 113549 1 9 16 1 2
Comment = S/MIME Content Types
Description = authData

OID = 1 2 840 113549 1 9 16 1 3
Comment = S/MIME Content Types
Description = publishCert

OID = 1 2 840 113549 1 9 16 1 4
Comment = S/MIME Content Types
Description = tSTInfo

OID = 1 2 840 113549 1 9 16 1 5
Comment = S/MIME Content Types
Description = tDTInfo

OID = 1 2 840 113549 1 9 16 1 6
Comment = S/MIME Content Types
Description = contentInfo

OID = 1 2 840 113549 1 9 16 1 7
Comment = S/MIME Content Types
Description = dVCSRequestData

OID = 1 2 840 113549 1 9 16 1 8
Comment = S/MIME Content Types
Description = dVCSResponseData

OID = 1 2 840 113549 1 9 16 1 9
Comment = S/MIME Content Types
Description = compressedData

OID = 1 2 840 113549 1 9 16 1 10
Comment = S/MIME Content Types
Description = scvpCertValRequest

OID = 1 2 840 113549 1 9 16 1 11
Comment = S/MIME Content Types
Description = scvpCertValResponse

OID = 1 2 840 113549 1 9 16 1 12
Comment = S/MIME Content Types
Description = scvpValPolRequest

OID = 1 2 840 113549 1 9 16 1 13
Comment = S/MIME Content Types
Description = scvpValPolResponse

OID = 1 2 840 113549 1 9 16 1 14
Comment = S/MIME Content Types
Description = attrCertEncAttrs

OID = 1 2 840 113549 1 9 16 1 15
Comment = S/MIME Content Types
Description = tSReq

OID = 1 2 840 113549 1 9 16 1 16
Comment = S/MIME Content Types
Description = firmwarePackage

OID = 1 2 840 113549 1 9 16 1 17
Comment = S/MIME Content Types
Description = firmwareLoadReceipt

OID = 1 2 840 113549 1 9 16 1 18
Comment = S/MIME Content Types
Description = firmwareLoadError

OID = 1 2 840 113549 1 9 16 1 19
Comment = S/MIME Content Types
Description = contentCollection

OID = 1 2 840 113549 1 9 16 1 20
Comment = S/MIME Content Types
Description = contentWithAttrs

OID = 1 2 840 113549 1 9 16 1 21
Comment = S/MIME Content Types
Description = encKeyWithID

OID = 1 2 840 113549 1 9 16 1 22
Comment = S/MIME Content Types
Description = encPEPSI

OID = 1 2 840 113549 1 9 16 1 23
Comment = S/MIME Content Types
Description = authEnvelopedData

OID = 1 2 840 113549 1 9 16 1 24
Comment = S/MIME Content Types
Description = routeOriginAttest

OID = 1 2 840 113549 1 9 16 1 25
Comment = S/MIME Content Types
Description = symmetricKeyPackage

OID = 1 2 840 113549 1 9 16 1 26
Comment = S/MIME Content Types
Description = rpkiManifest

OID = 1 2 840 113549 1 9 16 1 27
Comment = S/MIME Content Types
Description = asciiTextWithCRLF

OID = 1 2 840 113549 1 9 16 1 28
Comment = S/MIME Content Types
Description = xml

OID = 1 2 840 113549 1 9 16 1 29
Comment = S/MIME Content Types
Description = pdf

OID = 1 2 840 113549 1 9 16 1 30
Comment = S/MIME Content Types
Description = postscript

OID = 1 2 840 113549 1 9 16 1 31
Comment = S/MIME Content Types
Description = timestampedData

OID = 1 2 840 113549 1 9 16 1 32
Comment = S/MIME Content Types
Description = asAdjacencyAttest
Warning

OID = 1 2 840 113549 1 9 16 1 33
Comment = S/MIME Content Types
Description = rpkiTrustAnchor

OID = 1 2 840 113549 1 9 16 1 34
Comment = S/MIME Content Types
Description = trustAnchorList

# S/MIME attributes

OID = 1 2 840 113549 1 9 16 2
Comment = S/MIME
Description = authenticatedAttributes

OID = 1 2 840 113549 1 9 16 2 1
Comment = S/MIME Authenticated Attributes
Description = receiptRequest

OID = 1 2 840 113549 1 9 16 2 2
Comment = S/MIME Authenticated Attributes
Description = securityLabel

OID = 1 2 840 113549 1 9 16 2 3
Comment = S/MIME Authenticated Attributes
Description = mlExpandHistory

OID = 1 2 840 113549 1 9 16 2 4
Comment = S/MIME Authenticated Attributes
Description = contentHint

OID = 1 2 840 113549 1 9 16 2 5
Comment = S/MIME Authenticated Attributes
Description = msgSigDigest

OID = 1 2 840 113549 1 9 16 2 6
Comment = S/MIME Authenticated Attributes.  Obsolete
Description = encapContentType
Warning

OID = 1 2 840 113549 1 9 16 2 7
Comment = S/MIME Authenticated Attributes
Description = contentIdentifier

OID = 1 2 840 113549 1 9 16 2 8
Comment = S/MIME Authenticated Attributes.  Obsolete
Description = macValue
Warning

OID = 1 2 840 113549 1 9 16 2 9
Comment = S/MIME Authenticated Attributes
Description = equivalentLabels

OID = 1 2 840 113549 1 9 16 2 10
Comment = S/MIME Authenticated Attributes
Description = contentReference

OID = 1 2 840 113549 1 9 16 2 11
Comment = S/MIME Authenticated Attributes
Description = encrypKeyPref

OID = 1 2 840 113549 1 9 16 2 12
Comment = S/MIME Authenticated Attributes
Description = signingCertificate

OID = 1 2 840 113549 1 9 16 2 13
Comment = S/MIME Authenticated Attributes
Description = smimeEncryptCerts

OID = 1 2 840 113549 1 9 16 2 14
Comment = S/MIME Authenticated Attributes
Description = timeStampToken

OID = 1 2 840 113549 1 9 16 2 15
Comment = S/MIME Authenticated Attributes
Description = sigPolicyId

OID = 1 2 840 113549 1 9 16 2 16
Comment = S/MIME Authenticated Attributes
Description = commitmentType

OID = 1 2 840 113549 1 9 16 2 17
Comment = S/MIME Authenticated Attributes
Description = signerLocation

OID = 1 2 840 113549 1 9 16 2 18
Comment = S/MIME Authenticated Attributes
Description = signerAttr

OID = 1 2 840 113549 1 9 16 2 19
Comment = S/MIME Authenticated Attributes
Description = otherSigCert

OID = 1 2 840 113549 1 9 16 2 20
Comment = S/MIME Authenticated Attributes
Description = contentTimestamp

OID = 1 2 840 113549 1 9 16 2 21
Comment = S/MIME Authenticated Attributes
Description = certificateRefs

OID = 1 2 840 113549 1 9 16 2 22
Comment = S/MIME Authenticated Attributes
Description = revocationRefs

OID = 1 2 840 113549 1 9 16 2 23
Comment = S/MIME Authenticated Attributes
Description = certValues

OID = 1 2 840 113549 1 9 16 2 24
Comment = S/MIME Authenticated Attributes
Description = revocationValues

OID = 1 2 840 113549 1 9 16 2 25
Comment = S/MIME Authenticated Attributes
Description = escTimeStamp

OID = 1 2 840 113549 1 9 16 2 26
Comment = S/MIME Authenticated Attributes
Description = certCRLTimestamp

OID = 1 2 840 113549 1 9 16 2 27
Comment = S/MIME Authenticated Attributes
Description = archiveTimeStamp

OID = 1 2 840 113549 1 9 16 2 28
Comment = S/MIME Authenticated Attributes
Description = signatureType

OID = 1 2 840 113549 1 9 16 2 29
Comment = S/MIME Authenticated Attributes
Description = dvcsDvc

OID = 1 2 840 113549 1 9 16 2 30
Comment = S/MIME Authenticated Attributes
Description = cekReference

OID = 1 2 840 113549 1 9 16 2 31
Comment = S/MIME Authenticated Attributes
Description = maxCEKDecrypts

OID = 1 2 840 113549 1 9 16 2 32
Comment = S/MIME Authenticated Attributes
Description = kekDerivationAlg

OID = 1 2 840 113549 1 9 16 2 33
Comment = S/MIME Authenticated Attributes.  Obsolete
Description = intendedRecipients
Warning

OID = 1 2 840 113549 1 9 16 2 34
Comment = S/MIME Authenticated Attributes
Description = cmcUnsignedData

OID = 1 2 840 113549 1 9 16 2 35
Comment = S/MIME Authenticated Attributes
Description = fwPackageID

OID = 1 2 840 113549 1 9 16 2 36
Comment = S/MIME Authenticated Attributes
Description = fwTargetHardwareIDs

OID = 1 2 840 113549 1 9 16 2 37
Comment = S/MIME Authenticated Attributes
Description = fwDecryptKeyID

OID = 1 2 840 113549 1 9 16 2 38
Comment = S/MIME Authenticated Attributes
Description = fwImplCryptAlgs

OID = 1 2 840 113549 1 9 16 2 39
Comment = S/MIME Authenticated Attributes
Description = fwWrappedFirmwareKey

OID = 1 2 840 113549 1 9 16 2 40
Comment = S/MIME Authenticated Attributes
Description = fwCommunityIdentifiers

OID = 1 2 840 113549 1 9 16 2 41
Comment = S/MIME Authenticated Attributes
Description = fwPkgMessageDigest

OID = 1 2 840 113549 1 9 16 2 42
Comment = S/MIME Authenticated Attributes
Description = fwPackageInfo

OID = 1 2 840 113549 1 9 16 2 43
Comment = S/MIME Authenticated Attributes
Description = fwImplCompressAlgs

OID = 1 2 840 113549 1 9 16 2 44
Comment = S/MIME Authenticated Attributes
Description = etsAttrCertificateRefs

OID = 1 2 840 113549 1 9 16 2 45
Comment = S/MIME Authenticated Attributes
Description = etsAttrRevocationRefs

OID = 1 2 840 113549 1 9 16 2 46
Comment = S/MIME Authenticated Attributes
Description = binarySigningTime

OID = 1 2 840 113549 1 9 16 2 47
Comment = S/MIME Authenticated Attributes
Description = signingCertificateV2

OID = 1 2 840 113549 1 9 16 2 48
Comment = S/MIME Authenticated Attributes
Description = etsArchiveTimeStampV2

OID = 1 2 840 113549 1 9 16 2 49
Comment = S/MIME Authenticated Attributes
Description = erInternal

OID = 1 2 840 113549 1 9 16 2 50
Comment = S/MIME Authenticated Attributes
Description = erExternal

OID = 1 2 840 113549 1 9 16 2 51
Comment = S/MIME Authenticated Attributes
Description = multipleSignatures

# S/MIME algorithms

OID = 1 2 840 113549 1 9 16 3 1
Comment = S/MIME Algorithms. Obsolete
Description = esDHwith3DES
Warning

OID = 1 2 840 113549 1 9 16 3 2
Comment = S/MIME Algorithms. Obsolete
Description = esDHwithRC2
Warning

OID = 1 2 840 113549 1 9 16 3 3
Comment = S/MIME Algorithms. Obsolete
Description = 3desWrap
Warning

OID = 1 2 840 113549 1 9 16 3 4
Comment = S/MIME Algorithms. Obsolete
Description = rc2Wrap
Warning

OID = 1 2 840 113549 1 9 16 3 5
Comment = S/MIME Algorithms
Description = esDH

OID = 1 2 840 113549 1 9 16 3 6
Comment = S/MIME Algorithms
Description = cms3DESwrap

OID = 1 2 840 113549 1 9 16 3 7
Comment = S/MIME Algorithms
Description = cmsRC2wrap

OID = 1 2 840 113549 1 9 16 3 8
Comment = S/MIME Algorithms
Description = zlib

OID = 1 2 840 113549 1 9 16 3 9
Comment = S/MIME Algorithms
Description = pwriKEK

OID = 1 2 840 113549 1 9 16 3 10
Comment = S/MIME Algorithms
Description = ssDH

OID = 1 2 840 113549 1 9 16 3 11
Comment = S/MIME Algorithms
Description = hmacWith3DESwrap

OID = 1 2 840 113549 1 9 16 3 12
Comment = S/MIME Algorithms
Description = hmacWithAESwrap

OID = 1 2 840 113549 1 9 16 3 13
Comment = S/MIME Algorithms.  Experimental
Description = md5XorExperiment
Warning

OID = 1 2 840 113549 1 9 16 3 14
Comment = S/MIME Algorithms
Description = rsaKEM

OID = 1 2 840 113549 1 9 16 3 15
Comment = S/MIME Algorithms
Description = authEnc128

OID = 1 2 840 113549 1 9 16 3 16
Comment = S/MIME Algorithms
Description = authEnc256

# S/MIME miscellaneous

OID = 1 2 840 113549 1 9 16 4 1
Comment = S/MIME Certificate Distribution
Description = certDist-ldap

OID = 1 2 840 113549 1 9 16 5 1
Comment = S/MIME Signature Policy Qualifiers
Description = sigPolicyQualifier-spuri x

OID = 1 2 840 113549 1 9 16 5 2
Comment = S/MIME Signature Policy Qualifiers
Description = sigPolicyQualifier-spUserNotice

OID = 1 2 840 113549 1 9 16 6 1
Comment = S/MIME Commitment Type Identifiers
Description = proofOfOrigin

OID = 1 2 840 113549 1 9 16 6 2
Comment = S/MIME Commitment Type Identifiers
Description = proofOfReceipt

OID = 1 2 840 113549 1 9 16 6 3
Comment = S/MIME Commitment Type Identifiers
Description = proofOfDelivery

OID = 1 2 840 113549 1 9 16 6 4
Comment = S/MIME Commitment Type Identifiers
Description = proofOfSender

OID = 1 2 840 113549 1 9 16 6 5
Comment = S/MIME Commitment Type Identifiers
Description = proofOfApproval

OID = 1 2 840 113549 1 9 16 6 6
Comment = S/MIME Commitment Type Identifiers
Description = proofOfCreation

OID = 1 2 840 113549 1 9 16 8 1
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glUseKEK

OID = 1 2 840 113549 1 9 16 8 2
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glDelete

OID = 1 2 840 113549 1 9 16 8 3
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glAddMember

OID = 1 2 840 113549 1 9 16 8 4
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glDeleteMember

OID = 1 2 840 113549 1 9 16 8 5
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glRekey

OID = 1 2 840 113549 1 9 16 8 6
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glAddOwner

OID = 1 2 840 113549 1 9 16 8 7
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glRemoveOwner

OID = 1 2 840 113549 1 9 16 8 8
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glkCompromise

OID = 1 2 840 113549 1 9 16 8 9
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glkRefresh

OID = 1 2 840 113549 1 9 16 8 10
Comment = S/MIME Symmetric Key Distribution Attributes.  Obsolete
Description = glFailInfo
Warning

OID = 1 2 840 113549 1 9 16 8 11
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glaQueryRequest

OID = 1 2 840 113549 1 9 16 8 12
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glaQueryResponse

OID = 1 2 840 113549 1 9 16 8 13
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glProvideCert

OID = 1 2 840 113549 1 9 16 8 14
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glUpdateCert

OID = 1 2 840 113549 1 9 16 8 15
Comment = S/MIME Symmetric Key Distribution Attributes
Description = glKey

OID = 1 2 840 113549 1 9 15
Comment = PKCS #9. This OID was formerly assigned as symmetricCapabilities, then reassigned as SMIMECapabilities, then renamed to the current name
Description = sMIMECapabilities

OID = 1 2 840 113549 1 9 16 9
Comment = S/MIME
Description = signatureTypeIdentifier

OID = 1 2 840 113549 1 9 16 9 1
Comment = S/MIME Signature Type Identifier
Description = originatorSig

OID = 1 2 840 113549 1 9 16 9 2
Comment = S/MIME Signature Type Identifier
Description = domainSig

OID = 1 2 840 113549 1 9 16 9 3
Comment = S/MIME Signature Type Identifier
Description = additionalAttributesSig

OID = 1 2 840 113549 1 9 16 9 4
Comment = S/MIME Signature Type Identifier
Description = reviewSig

OID = 1 2 840 113549 1 9 16 11
Comment = S/MIME
Description = capabilities

OID = 1 2 840 113549 1 9 16 11 1
Comment = S/MIME Capability
Description = preferBinaryInside

# PKCS #9 for use with PKCS #12

OID = 1 2 840 113549 1 9 20
Comment = PKCS #9 via PKCS #12
Description = friendlyName (for PKCS #12)

OID = 1 2 840 113549 1 9 21
Comment = PKCS #9 via PKCS #12
Description = localKeyID (for PKCS #12)

OID = 1 2 840 113549 1 9 22
Comment = PKCS #9 via PKCS #12
Description = certTypes (for PKCS #12)

OID = 1 2 840 113549 1 9 22 1
Comment = PKCS #9 via PKCS #12
Description = x509Certificate (for PKCS #12)

OID = 1 2 840 113549 1 9 22 2
Comment = PKCS #9 via PKCS #12
Description = sdsiCertificate (for PKCS #12)

OID = 1 2 840 113549 1 9 23
Comment = PKCS #9 via PKCS #12
Description = crlTypes (for PKCS #12)

OID = 1 2 840 113549 1 9 23 1
Comment = PKCS #9 via PKCS #12
Description = x509Crl (for PKCS #12)

# PKCS #9, another set of branches used for accumulating further cruft

OID = 1 2 840 113549 1 9 24
Comment = PKCS #9/RFC 2985
Description = pkcs9objectClass

OID = 1 2 840 113549 1 9 25
Comment = PKCS #9/RFC 2985
Description = pkcs9attributes

OID = 1 2 840 113549 1 9 25 1
Comment = PKCS #9/RFC 2985 attribute
Description = pkcs15Token

OID = 1 2 840 113549 1 9 25 2
Comment = PKCS #9/RFC 2985 attribute
Description = encryptedPrivateKeyInfo

OID = 1 2 840 113549 1 9 25 3
Comment = PKCS #9/RFC 2985 attribute
Description = randomNonce

OID = 1 2 840 113549 1 9 25 4
Comment = PKCS #9/RFC 2985 attribute
Description = sequenceNumber

OID = 1 2 840 113549 1 9 25 5
Comment = PKCS #9/RFC 2985 attribute
Description = pkcs7PDU

OID = 1 2 840 113549 1 9 26
Comment = PKCS #9/RFC 2985
Description = pkcs9syntax

OID = 1 2 840 113549 1 9 27
Comment = PKCS #9/RFC 2985
Description = pkcs9matchingRules

# PKCS #12.  Note that current PKCS #12 implementations tend to be strange and
# peculiar, with implementors misusing OIDs or basing their work on earlier PFX
# drafts or defining their own odd OIDs.  In addition the PFX/PKCS #12 spec
# itself is full of errors and inconsistencies and a number of OIDs have been
# redefined in different drafts (often multiple times), which doesn't make the
# implementors job any easier.

OID = 1 2 840 113549 1 12
Description = pkcs-12

OID = 1 2 840 113549 1 12 1
Comment = This OID was formerly assigned as PKCS #12 modeID
Description = pkcs-12-PbeIds

OID = 1 2 840 113549 1 12 1 1
Comment = PKCS #12 PbeIds. This OID was formerly assigned as pkcs-12-OfflineTransportMode
Description = pbeWithSHAAnd128BitRC4

OID = 1 2 840 113549 1 12 1 2
Comment = PKCS #12 PbeIds. This OID was formerly assigned as pkcs-12-OnlineTransportMode
Description = pbeWithSHAAnd40BitRC4

OID = 1 2 840 113549 1 12 1 3
Comment = PKCS #12 PbeIds
Description = pbeWithSHAAnd3-KeyTripleDES-CBC

OID = 1 2 840 113549 1 12 1 4
Comment = PKCS #12 PbeIds
Description = pbeWithSHAAnd2-KeyTripleDES-CBC

OID = 1 2 840 113549 1 12 1 5
Comment = PKCS #12 PbeIds
Description = pbeWithSHAAnd128BitRC2-CBC

OID = 1 2 840 113549 1 12 1 6
Comment = PKCS #12 PbeIds
Description = pbeWithSHAAnd40BitRC2-CBC

OID = 1 2 840 113549 1 12 2
Comment = Deprecated
Description = pkcs-12-ESPVKID
Warning

OID = 1 2 840 113549 1 12 2 1
Comment = PKCS #12 ESPVKID. Deprecated, use (1 2 840 113549 1 12 3 5) instead
Description = pkcs-12-PKCS8KeyShrouding
Warning

# The following appear to have been redefined yet again at 12 10 in the latest
# PKCS #12 spec.
OID = 1 2 840 113549 1 12 3
Description = pkcs-12-BagIds

OID = 1 2 840 113549 1 12 3 1
Comment = PKCS #12 BagIds
Description = pkcs-12-keyBagId

OID = 1 2 840 113549 1 12 3 2
Comment = PKCS #12 BagIds
Description = pkcs-12-certAndCRLBagId

OID = 1 2 840 113549 1 12 3 3
Comment = PKCS #12 BagIds
Description = pkcs-12-secretBagId

OID = 1 2 840 113549 1 12 3 4
Comment = PKCS #12 BagIds
Description = pkcs-12-safeContentsId

OID = 1 2 840 113549 1 12 3 5
Comment = PKCS #12 BagIds
Description = pkcs-12-pkcs-8ShroudedKeyBagId

OID = 1 2 840 113549 1 12 4
Comment = Deprecated
Description = pkcs-12-CertBagID
Warning

OID = 1 2 840 113549 1 12 4 1
Comment = PKCS #12 CertBagID. This OID was formerly assigned as pkcs-12-X509CertCRLBag
Description = pkcs-12-X509CertCRLBagID

OID = 1 2 840 113549 1 12 4 2
Comment = PKCS #12 CertBagID. This OID was formerly assigned as pkcs-12-SDSICertBag
Description = pkcs-12-SDSICertBagID

# The following are from PFX.  The ... 5 1 values have been reassigned to OIDs
# with incompatible algorithms at ... 1, the 5 2 values seem to have vanished.
OID = 1 2 840 113549 1 12 5
Description = pkcs-12-OID
Warning

OID = 1 2 840 113549 1 12 5 1
Comment = PKCS #12 OID. Deprecated, use the partially compatible (1 2 840 113549 1 12 1) OIDs instead
Description = pkcs-12-PBEID
Warning

OID = 1 2 840 113549 1 12 5 1 1
Comment = PKCS #12 OID PBEID. Deprecated, use (1 2 840 113549 1 12 1 1) instead
Description = pkcs-12-PBEWithSha1And128BitRC4
Warning

OID = 1 2 840 113549 1 12 5 1 2
Comment = PKCS #12 OID PBEID. Deprecated, use (1 2 840 113549 1 12 1 2) instead
Description = pkcs-12-PBEWithSha1And40BitRC4
Warning

OID = 1 2 840 113549 1 12 5 1 3
Comment = PKCS #12 OID PBEID. Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 3) or (1 2 840 113549 1 12 1 4) instead
Description = pkcs-12-PBEWithSha1AndTripleDESCBC
Warning

OID = 1 2 840 113549 1 12 5 1 4
Comment = PKCS #12 OID PBEID. Deprecated, use (1 2 840 113549 1 12 1 5) instead
Description = pkcs-12-PBEWithSha1And128BitRC2CBC
Warning

OID = 1 2 840 113549 1 12 5 1 5
Comment = PKCS #12 OID PBEID. Deprecated, use (1 2 840 113549 1 12 1 6) instead
Description = pkcs-12-PBEWithSha1And40BitRC2CBC
Warning

OID = 1 2 840 113549 1 12 5 1 6
Comment = PKCS #12 OID PBEID. Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 1) or (1 2 840 113549 1 12 1 2) instead
Description = pkcs-12-PBEWithSha1AndRC4
Warning

OID = 1 2 840 113549 1 12 5 1 7
Comment = PKCS #12 OID PBEID. Deprecated, use the incompatible but similar (1 2 840 113549 1 12 1 5) or (1 2 840 113549 1 12 1 6) instead
Description = pkcs-12-PBEWithSha1AndRC2CBC
Warning

OID = 1 2 840 113549 1 12 5 2
Comment = PKCS #12 OID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-EnvelopingID

OID = 1 2 840 113549 1 12 5 2 1
Comment = PKCS #12 OID EnvelopingID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-RSAEncryptionWith128BitRC4
Warning

OID = 1 2 840 113549 1 12 5 2 2
Comment = PKCS #12 OID EnvelopingID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-RSAEncryptionWith40BitRC4
Warning

OID = 1 2 840 113549 1 12 5 2 3
Comment = PKCS #12 OID EnvelopingID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-RSAEncryptionWithTripleDES
Warning

OID = 1 2 840 113549 1 12 5 3
Comment = PKCS #12 OID EnvelopingID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-SignatureID
Warning

OID = 1 2 840 113549 1 12 5 3 1
Comment = PKCS #12 OID SignatureID. Deprecated, use the conventional PKCS #1 OIDs instead
Description = pkcs-12-RSASignatureWithSHA1Digest
Warning

# Yet *another* redefinition of the PKCS #12 "bag" ID's, now in a different
# order than the last redefinition at ... 12 3.
OID = 1 2 840 113549 1 12 10
Description = pkcs-12Version1

OID = 1 2 840 113549 1 12 10 1
Description = pkcs-12BadIds

OID = 1 2 840 113549 1 12 10 1 1
Comment = PKCS #12 BagIds
Description = pkcs-12-keyBag

OID = 1 2 840 113549 1 12 10 1 2
Comment = PKCS #12 BagIds
Description = pkcs-12-pkcs-8ShroudedKeyBag

OID = 1 2 840 113549 1 12 10 1 3
Comment = PKCS #12 BagIds
Description = pkcs-12-certBag

OID = 1 2 840 113549 1 12 10 1 4
Comment = PKCS #12 BagIds
Description = pkcs-12-crlBag

OID = 1 2 840 113549 1 12 10 1 5
Comment = PKCS #12 BagIds
Description = pkcs-12-secretBag

OID = 1 2 840 113549 1 12 10 1 6
Comment = PKCS #12 BagIds
Description = pkcs-12-safeContentsBag

# PKCS #15

OID = 1 2 840 113549 1 15 1
Comment = PKCS #15
Description = pkcs15modules

OID = 1 2 840 113549 1 15 2
Comment = PKCS #15
Description = pkcs15attributes

OID = 1 2 840 113549 1 15 3
Comment = PKCS #15
Description = pkcs15contentType

OID = 1 2 840 113549 1 15 3 1
Comment = PKCS #15 content type
Description = pkcs15content

# RSADSI digest algorithms

OID = 1 2 840 113549 2
Description = digestAlgorithm

OID = 1 2 840 113549 2 2
Comment = RSADSI digestAlgorithm
Description = md2

OID = 1 2 840 113549 2 4
Comment = RSADSI digestAlgorithm
Description = md4

OID = 1 2 840 113549 2 5
Comment = RSADSI digestAlgorithm
Description = md5

OID = 1 2 840 113549 2 7
Comment = RSADSI digestAlgorithm
Description = hmacWithSHA1

OID = 1 2 840 113549 2 8
Comment = RSADSI digestAlgorithm
Description = hmacWithSHA224

OID = 1 2 840 113549 2 9
Comment = RSADSI digestAlgorithm
Description = hmacWithSHA256

OID = 1 2 840 113549 2 10
Comment = RSADSI digestAlgorithm
Description = hmacWithSHA384

OID = 1 2 840 113549 2 11
Comment = RSADSI digestAlgorithm
Description = hmacWithSHA512

# RSADSI encryption algorithms

OID = 1 2 840 113549 3
Description = encryptionAlgorithm

OID = 1 2 840 113549 3 2
Comment = RSADSI encryptionAlgorithm
Description = rc2CBC

OID = 1 2 840 113549 3 3
Comment = RSADSI encryptionAlgorithm
Description = rc2ECB

OID = 1 2 840 113549 3 4
Comment = RSADSI encryptionAlgorithm
Description = rc4

OID = 1 2 840 113549 3 5
Comment = RSADSI encryptionAlgorithm
Description = rc4WithMAC

OID = 1 2 840 113549 3 6
Comment = RSADSI encryptionAlgorithm
Description = desx-CBC

OID = 1 2 840 113549 3 7
Comment = RSADSI encryptionAlgorithm
Description = des-EDE3-CBC

OID = 1 2 840 113549 3 8
Comment = RSADSI encryptionAlgorithm
Description = rc5CBC

OID = 1 2 840 113549 3 9
Comment = RSADSI encryptionAlgorithm
Description = rc5-CBCPad

OID = 1 2 840 113549 3 10
Comment = RSADSI encryptionAlgorithm. Formerly called CDMFCBCPad
Description = desCDMF

# Identrus

OID = 1 2 840 114021 1 6 1
Comment = Identrus
Description = Identrus unknown policyIdentifier

OID = 1 2 840 114021 4 1
Comment = Identrus
Description = identrusOCSP

# Microsoft (both 1 2 840 and 1 3 6 1 4 1 arcs)

OID = 1 2 840 113556 1 2 241
Comment = Microsoft Exchange Server - attribute
Description = deliveryMechanism

OID = 1 2 840 113556 1 3 0
Comment = Microsoft Exchange Server - object class
Description = site-Addressing

OID = 1 2 840 113556 1 3 13
Comment = Microsoft Exchange Server - object class
Description = classSchema

OID = 1 2 840 113556 1 3 14
Comment = Microsoft Exchange Server - object class
Description = attributeSchema

OID = 1 2 840 113556 1 3 17
Comment = Microsoft Exchange Server - object class
Description = mailbox-Agent

OID = 1 2 840 113556 1 3 22
Comment = Microsoft Exchange Server - object class
Description = mailbox

OID = 1 2 840 113556 1 3 23
Comment = Microsoft Exchange Server - object class
Description = container

OID = 1 2 840 113556 1 3 46
Comment = Microsoft Exchange Server - object class
Description = mailRecipient

OID = 1 2 840 113556 1 2 281
Comment = Microsoft Cert Template - attribute
Description = ntSecurityDescriptor

OID = 1 2 840 113556 1 4 145
Comment = Microsoft Cert Template - attribute
Description = revision

OID = 1 2 840 113556 1 4 1327
Comment = Microsoft Cert Template - attribute
Description = pKIDefaultKeySpec

OID = 1 2 840 113556 1 4 1328
Comment = Microsoft Cert Template - attribute
Description = pKIKeyUsage

OID = 1 2 840 113556 1 4 1329
Comment = Microsoft Cert Template - attribute
Description = pKIMaxIssuingDepth

OID = 1 2 840 113556 1 4 1330
Comment = Microsoft Cert Template - attribute
Description = pKICriticalExtensions

OID = 1 2 840 113556 1 4 1331
Comment = Microsoft Cert Template - attribute
Description = pKIExpirationPeriod

OID = 1 2 840 113556 1 4 1332
Comment = Microsoft Cert Template - attribute
Description = pKIOverlapPeriod

OID = 1 2 840 113556 1 4 1333
Comment = Microsoft Cert Template - attribute
Description = pKIExtendedKeyUsage

OID = 1 2 840 113556 1 4 1334
Comment = Microsoft Cert Template - attribute
Description = pKIDefaultCSPs

OID = 1 2 840 113556 1 4 1335
Comment = Microsoft Cert Template - attribute
Description = pKIEnrollmentAccess

OID = 1 2 840 113556 1 4 1429
Comment = Microsoft Cert Template - attribute
Description = msPKI-RA-Signature

OID = 1 2 840 113556 1 4 1430
Comment = Microsoft Cert Template - attribute
Description = msPKI-Enrollment-Flag

OID = 1 2 840 113556 1 4 1431
Comment = Microsoft Cert Template - attribute
Description = msPKI-Private-Key-Flag

OID = 1 2 840 113556 1 4 1432
Comment = Microsoft Cert Template - attribute
Description = msPKI-Certificate-Name-Flag

OID = 1 2 840 113556 1 4 1433
Comment = Microsoft Cert Template - attribute
Description = msPKI-Minimal-Key-Size

OID = 1 2 840 113556 1 4 1434
Comment = Microsoft Cert Template - attribute
Description = msPKI-Template-Schema-Version

OID = 1 2 840 113556 1 4 1435
Comment = Microsoft Cert Template - attribute
Description = msPKI-Template-Minor-Revision

OID = 1 2 840 113556 1 4 1436
Comment = Microsoft Cert Template - attribute
Description = msPKI-Cert-Template-OID

OID = 1 2 840 113556 1 4 1437
Comment = Microsoft Cert Template - attribute
Description = msPKI-Supersede-Templates

OID = 1 2 840 113556 1 4 1438
Comment = Microsoft Cert Template - attribute
Description = msPKI-RA-Policies

OID = 1 2 840 113556 1 4 1439
Comment = Microsoft Cert Template - attribute
Description = msPKI-Certificate-Policy

OID = 1 2 840 113556 1 4 1674
Comment = Microsoft Cert Template - attribute
Description = msPKI-Certificate-Application-Policy

OID = 1 2 840 113556 1 4 1675
Comment = Microsoft Cert Template - attribute
Description = msPKI-RA-Application-Policies

OID = 1 2 840 113556 4 3
Comment = Microsoft
Description = microsoftExcel

OID = 1 2 840 113556 4 4
Comment = Microsoft
Description = titledWithOID

OID = 1 2 840 113556 4 5
Comment = Microsoft
Description = microsoftPowerPoint

# Adobe

OID = 1 2 840 113628 114 1 7
Comment = Adobe
Description = adobePKCS7

# Apple

OID = 1 2 840 113635 100
Comment = Apple
Description = appleDataSecurity

OID = 1 2 840 113635 100 1
Comment = Apple
Description = appleTrustPolicy

OID = 1 2 840 113635 100 1 1
Comment = Apple trust policy
Description = appleISignTP

OID = 1 2 840 113635 100 1 2
Comment = Apple trust policy
Description = appleX509Basic

OID = 1 2 840 113635 100 1 3
Comment = Apple trust policy
Description = appleSSLPolicy

OID = 1 2 840 113635 100 1 4
Comment = Apple trust policy
Description = appleLocalCertGenPolicy

OID = 1 2 840 113635 100 1 5
Comment = Apple trust policy
Description = appleCSRGenPolicy

OID = 1 2 840 113635 100 1 6
Comment = Apple trust policy
Description = appleCRLPolicy

OID = 1 2 840 113635 100 1 7
Comment = Apple trust policy
Description = appleOCSPPolicy

OID = 1 2 840 113635 100 1 8
Comment = Apple trust policy
Description = appleSMIMEPolicy

OID = 1 2 840 113635 100 1 9
Comment = Apple trust policy
Description = appleEAPPolicy

OID = 1 2 840 113635 100 1 10
Comment = Apple trust policy
Description = appleSWUpdateSigningPolicy

OID = 1 2 840 113635 100 1 11
Comment = Apple trust policy
Description = appleIPSecPolicy

OID = 1 2 840 113635 100 1 12
Comment = Apple trust policy
Description = appleIChatPolicy

OID = 1 2 840 113635 100 1 13
Comment = Apple trust policy
Description = appleResourceSignPolicy

OID = 1 2 840 113635 100 1 14
Comment = Apple trust policy
Description = applePKINITClientPolicy

OID = 1 2 840 113635 100 1 15
Comment = Apple trust policy
Description = applePKINITServerPolicy

OID = 1 2 840 113635 100 1 16
Comment = Apple trust policy
Description = appleCodeSigningPolicy

OID = 1 2 840 113635 100 1 17
Comment = Apple trust policy
Description = applePackageSigningPolicy

OID = 1 2 840 113635 100 2
Comment = Apple
Description = appleSecurityAlgorithm

OID = 1 2 840 113635 100 2 1
Comment = Apple security algorithm
Description = appleFEE

OID = 1 2 840 113635 100 2 2
Comment = Apple security algorithm
Description = appleASC

OID = 1 2 840 113635 100 2 3
Comment = Apple security algorithm
Description = appleFEE_MD5

OID = 1 2 840 113635 100 2 4
Comment = Apple security algorithm
Description = appleFEE_SHA1

OID = 1 2 840 113635 100 2 5
Comment = Apple security algorithm
Description = appleFEED

OID = 1 2 840 113635 100 2 6
Comment = Apple security algorithm
Description = appleFEEDEXP

OID = 1 2 840 113635 100 2 7
Comment = Apple security algorithm
Description = appleECDSA

OID = 1 2 840 113635 100 3
Comment = Apple
Description = appleDotMacCertificate

# There are lots more subtypes under the following arcs, who knows
# what they're used for or whether they've ever been used at all.

OID = 1 2 840 113635 100 3 1
Comment = Apple dotMac certificate
Description = appleDotMacCertificateRequest

OID = 1 2 840 113635 100 3 2
Comment = Apple dotMac certificate
Description = appleDotMacCertificateExtension

OID = 1 2 840 113635 100 3 3
Comment = Apple dotMac certificate
Description = appleDotMacCertificateRequestValues

OID = 1 2 840 113635 100 4
Comment = Apple
Description = appleExtendedKeyUsage

OID = 1 2 840 113635 100 4 1
Comment = Apple extended key usage
Description = appleCodeSigning

OID = 1 2 840 113635 100 4 1 1
Comment = Apple extended key usage
Description = appleCodeSigningDevelopment

OID = 1 2 840 113635 100 4 1 2
Comment = Apple extended key usage
Description = appleSoftwareUpdateSigning

OID = 1 2 840 113635 100 4 1 3
Comment = Apple extended key usage
Description = appleCodeSigningThirdParty

OID = 1 2 840 113635 100 4 1 4
Comment = Apple extended key usage
Description = appleResourceSigning

OID = 1 2 840 113635 100 4 2
Comment = Apple extended key usage
Description = appleIChatSigning

OID = 1 2 840 113635 100 4 3
Comment = Apple extended key usage
Description = appleIChatEncryption

OID = 1 2 840 113635 100 4 4
Comment = Apple extended key usage
Description = appleSystemIdentity

OID = 1 2 840 113635 100 4 5
Comment = Apple extended key usage
Description = appleCryptoEnv

OID = 1 2 840 113635 100 4 5 1
Comment = Apple extended key usage
Description = appleCryptoProductionEnv

OID = 1 2 840 113635 100 4 5 2
Comment = Apple extended key usage
Description = appleCryptoMaintenanceEnv

OID = 1 2 840 113635 100 4 5 3
Comment = Apple extended key usage
Description = appleCryptoTestEnv

OID = 1 2 840 113635 100 4 5 4
Comment = Apple extended key usage
Description = appleCryptoDevelopmentEnv

OID = 1 2 840 113635 100 4 6
Comment = Apple extended key usage
Description = appleCryptoQoS

OID = 1 2 840 113635 100 4 6 1
Comment = Apple extended key usage
Description = appleCryptoTier0QoS

OID = 1 2 840 113635 100 4 6 2
Comment = Apple extended key usage
Description = appleCryptoTier1QoS

OID = 1 2 840 113635 100 4 6 3
Comment = Apple extended key usage
Description = appleCryptoTier2QoS

OID = 1 2 840 113635 100 4 6 4
Comment = Apple extended key usage
Description = appleCryptoTier3QoS

OID = 1 2 840 113635 100 5
Comment = Apple
Description = appleCertificatePolicies

OID = 1 2 840 113635 100 5 1
Comment = Apple
Description = appleCertificatePolicyID

OID = 1 2 840 113635 100 5 2
Comment = Apple
Description = appleDotMacCertificatePolicyID

OID = 1 2 840 113635 100 5 3
Comment = Apple
Description = appleADCCertificatePolicyID

OID = 1 2 840 113635 100 6
Comment = Apple
Description = appleCertificateExtensions

OID = 1 2 840 113635 100 6 1
Comment = Apple certificate extension
Description = appleCertificateExtensionCodeSigning

OID = 1 2 840 113635 100 6 1 1
Comment = Apple certificate extension
Description = appleCertificateExtensionAppleSigning

OID = 1 2 840 113635 100 6 1 2
Comment = Apple certificate extension
Description = appleCertificateExtensionADCDeveloperSigning

OID = 1 2 840 113635 100 6 1 3
Comment = Apple certificate extension
Description = appleCertificateExtensionADCAppleSigning

# More Microsoft under the IETF arc

OID = 1 3 6 1 4 1 311 2 1 4
Comment = Microsoft code signing
Description = spcIndirectDataContext

OID = 1 3 6 1 4 1 311 2 1 10
Comment = Microsoft code signing. Also known as policyLink
Description = spcAgencyInfo

OID = 1 3 6 1 4 1 311 2 1 11
Comment = Microsoft code signing
Description = spcStatementType

OID = 1 3 6 1 4 1 311 2 1 12
Comment = Microsoft code signing
Description = spcSpOpusInfo

OID = 1 3 6 1 4 1 311 2 1 14
Comment = Microsoft
Description = certReqExtensions

OID = 1 3 6 1 4 1 311 2 1 15
Comment = Microsoft code signing
Description = spcPEImageData

OID = 1 3 6 1 4 1 311 2 1 18
Comment = Microsoft code signing
Description = spcRawFileData

OID = 1 3 6 1 4 1 311 2 1 19
Comment = Microsoft code signing
Description = spcStructuredStorageData

OID = 1 3 6 1 4 1 311 2 1 20
Comment = Microsoft code signing. Formerly "link extension" aka "glue extension"
Description = spcJavaClassData (type 1)

OID = 1 3 6 1 4 1 311 2 1 21
Comment = Microsoft
Description = individualCodeSigning

OID = 1 3 6 1 4 1 311 2 1 22
Comment = Microsoft
Description = commercialCodeSigning

OID = 1 3 6 1 4 1 311 2 1 25
Comment = Microsoft code signing. Also known as "glue extension"
Description = spcLink (type 2)

OID = 1 3 6 1 4 1 311 2 1 26
Comment = Microsoft code signing
Description = spcMinimalCriteriaInfo

OID = 1 3 6 1 4 1 311 2 1 27
Comment = Microsoft code signing
Description = spcFinancialCriteriaInfo

OID = 1 3 6 1 4 1 311 2 1 28
Comment = Microsoft code signing.  Also known as "glue extension"
Description = spcLink (type 3)

OID = 1 3 6 1 4 1 311 3 2 1
Comment = Microsoft code signing
Description = timestampRequest

OID = 1 3 6 1 4 1 311 10 1
Comment = Microsoft contentType
Description = certTrustList

OID = 1 3 6 1 4 1 311 10 1 1
Comment = Microsoft contentType
Description = sortedCtl

OID = 1 3 6 1 4 1 311 10 2
Comment = Microsoft
Description = nextUpdateLocation

OID = 1 3 6 1 4 1 311 10 3 1
Comment = Microsoft enhanced key usage
Description = certTrustListSigning

OID = 1 3 6 1 4 1 311 10 3 2
Comment = Microsoft enhanced key usage
Description = timeStampSigning

OID = 1 3 6 1 4 1 311 10 3 3
Comment = Microsoft enhanced key usage
Description = serverGatedCrypto

OID = 1 3 6 1 4 1 311 10 3 3 1
Comment = Microsoft
Description = serialized

OID = 1 3 6 1 4 1 311 10 3 4
Comment = Microsoft enhanced key usage
Description = encryptedFileSystem

OID = 1 3 6 1 4 1 311 10 3 5
Comment = Microsoft enhanced key usage
Description = whqlCrypto

OID = 1 3 6 1 4 1 311 10 3 6
Comment = Microsoft enhanced key usage
Description = nt5Crypto

OID = 1 3 6 1 4 1 311 10 3 7
Comment = Microsoft enhanced key usage
Description = oemWHQLCrypto

OID = 1 3 6 1 4 1 311 10 3 8
Comment = Microsoft enhanced key usage
Description = embeddedNTCrypto

OID = 1 3 6 1 4 1 311 10 3 9
Comment = Microsoft enhanced key usage
Description = rootListSigner

OID = 1 3 6 1 4 1 311 10 3 10
Comment = Microsoft enhanced key usage
Description = qualifiedSubordination

OID = 1 3 6 1 4 1 311 10 3 11
Comment = Microsoft enhanced key usage
Description = keyRecovery

OID = 1 3 6 1 4 1 311 10 3 12
Comment = Microsoft enhanced key usage
Description = documentSigning

OID = 1 3 6 1 4 1 311 10 3 13
Comment = Microsoft enhanced key usage
Description = lifetimeSigning

OID = 1 3 6 1 4 1 311 10 3 14
Comment = Microsoft enhanced key usage
Description = mobileDeviceSoftware

OID = 1 3 6 1 4 1 311 10 3 15
Comment = Microsoft enhanced key usage
Description = smartDisplay

OID = 1 3 6 1 4 1 311 10 3 16
Comment = Microsoft enhanced key usage
Description = cspSignature

OID = 1 3 6 1 4 1 311 10 3 4 1
Comment = Microsoft enhanced key usage
Description = efsRecovery

OID = 1 3 6 1 4 1 311 10 4 1
Comment = Microsoft attribute
Description = yesnoTrustAttr

OID = 1 3 6 1 4 1 311 10 5 1
Comment = Microsoft enhanced key usage
Description = drm

OID = 1 3 6 1 4 1 311 10 5 2
Comment = Microsoft enhanced key usage
Description = drmIndividualization

OID = 1 3 6 1 4 1 311 10 6 1
Comment = Microsoft enhanced key usage
Description = licenses

OID = 1 3 6 1 4 1 311 10 6 2
Comment = Microsoft enhanced key usage
Description = licenseServer

OID = 1 3 6 1 4 1 311 10 7 1
Comment = Microsoft attribute
Description = keyidRdn

OID = 1 3 6 1 4 1 311 10 8 1
Comment = Microsoft attribute
Description = removeCertificate

OID = 1 3 6 1 4 1 311 10 9 1
Comment = Microsoft attribute
Description = crossCertDistPoints

OID = 1 3 6 1 4 1 311 10 10 1
Comment = Microsoft
Description = cmcAddAttributes

OID = 1 3 6 1 4 1 311 10 11
Comment = Microsoft
Description = certPropIdPrefix

OID = 1 3 6 1 4 1 311 10 11 4
Comment = Microsoft
Description = certMd5HashPropId

OID = 1 3 6 1 4 1 311 10 11 20
Comment = Microsoft
Description = certKeyIdentifierPropId

OID = 1 3 6 1 4 1 311 10 11 28
Comment = Microsoft
Description = certIssuerSerialNumberMd5HashPropId

OID = 1 3 6 1 4 1 311 10 11 29
Comment = Microsoft
Description = certSubjectNameMd5HashPropId

OID = 1 3 6 1 4 1 311 10 12 1
Comment = Microsoft attribute
Description = anyApplicationPolicy

# Certificate signing a renewal request
OID = 1 3 6 1 4 1 311 13 1
Comment = Microsoft attribute
Description = renewalCertificate

# Name-and-value string pairs
OID = 1 3 6 1 4 1 311 13 2 1
Comment = Microsoft attribute
Description = enrolmentNameValuePair

# CAPI cert enrolment CSP, contains a BMPString describing the CAPI level and
# a BIT STRING blob containing a key spec
OID = 1 3 6 1 4 1 311 13 2 2
Comment = Microsoft attribute
Description = enrolmentCSP

# Windows OS version
OID = 1 3 6 1 4 1 311 13 2 3
Comment = Microsoft attribute
Description = osVersion

# This is just the normal issuerAndSerialNumber but with a MS-specific OID.
# Apparently it's used for CryptEncode/DecodeObject, whatever that is.
OID = 1 3 6 1 4 1 311 16 4
Comment = Microsoft attribute
Description = microsoftRecipientInfo

OID = 1 3 6 1 4 1 311 17 1
Comment = Microsoft attribute
Description = pkcs12KeyProviderNameAttr

OID = 1 3 6 1 4 1 311 17 2
Comment = Microsoft attribute
Description = localMachineKeyset

OID = 1 3 6 1 4 1 311 17 3
Comment = Microsoft attribute
Description = pkcs12ExtendedAttributes

OID = 1 3 6 1 4 1 311 20 1
Comment = Microsoft
Description = autoEnrollCtlUsage

OID = 1 3 6 1 4 1 311 20 2
Comment = Microsoft CAPICOM certificate template, V1
Description = enrollCerttypeExtension

OID = 1 3 6 1 4 1 311 20 2 1
Comment = Microsoft enhanced key usage
Description = enrollmentAgent

OID = 1 3 6 1 4 1 311 20 2 2
Comment = Microsoft enhanced key usage
Description = smartcardLogon

OID = 1 3 6 1 4 1 311 20 2 3
Comment = Microsoft UPN
Description = universalPrincipalName

OID = 1 3 6 1 4 1 311 20 3
Comment = Microsoft
Description = certManifold

# Win2K CA certificate key/cert counter, high 16 bits = key index, low 16 bits
# = cert index.  Key index is inc'd when a CA gets a new key, cert index is
# inc'd when a CA gets a new cert (ie recertifies a current key).  This
# extension has two purposes, as a hint to rebuild key/cert lists when a Win2K
# CA is restored, and as a poster boy for the kind of crap that people are
# shovelling into certs that has no place there
OID = 1 3 6 1 4 1 311 21 1
Comment = Microsoft attribute.  Also known as certsrvCaVersion
Description = cAKeyCertIndexPair

# EKU: Encryption certificate for sending the private key to the CA
OID = 1 3 6 1 4 1 311 21 5
Comment = Microsoft extended key usage
Description = caExchange
Warning

OID = 1 3 6 1 4 1 311 21 2
Comment = Microsoft
Description = certSrvPreviousCertHash

OID = 1 3 6 1 4 1 311 21 3
Comment = Microsoft
Description = crlVirtualBase

OID = 1 3 6 1 4 1 311 21 4
Comment = Microsoft
Description = crlNextPublish

# EKU: keyRecovery
OID = 1 3 6 1 4 1 311 21 6
Comment = Microsoft extended key usage
Description = keyRecovery
Warning

OID = 1 3 6 1 4 1 311 21 7
Comment = Microsoft CAPICOM certificate template, V2
Description = certificateTemplate

# This one is at least as bad as cAKeyCertIndexPair: The first part of
# the arc, 1 3 6 1 4 1 311 21 8, is fixed, then 6 32-bit values are
# randomly generated and appended to create the full semi-random OID.
# Obviously it's not possible to usefully display these things...
# Comment = Microsoft braindamage
# Description = autoEnrollEFS (1 3 6 1 4 1 311 21 8 x x x x x x)

OID = 1 3 6 1 4 1 311 21 9
Comment = Microsoft
Description = rdnDummySigner

OID = 1 3 6 1 4 1 311 21 10
Comment = Microsoft
Description = applicationCertPolicies

OID = 1 3 6 1 4 1 311 21 11
Comment = Microsoft
Description = applicationPolicyMappings

OID = 1 3 6 1 4 1 311 21 12
Comment = Microsoft
Description = applicationPolicyConstraints

# Encrypted private key
OID = 1 3 6 1 4 1 311 21 13
Comment = Microsoft attribute
Description = archivedKey

OID = 1 3 6 1 4 1 311 21 14
Comment = Microsoft
Description = crlSelfCDP

OID = 1 3 6 1 4 1 311 21 15
Comment = Microsoft
Description = requireCertChainPolicy

OID = 1 3 6 1 4 1 311 21 16
Comment = Microsoft
Description = archivedKeyCertHash

OID = 1 3 6 1 4 1 311 21 17
Comment = Microsoft
Description = issuedCertHash

OID = 1 3 6 1 4 1 311 21 19
Comment = Microsoft
Description = dsEmailReplication

# Identity of the client application/ActiveX control, user, and machine
# that generated the request
OID = 1 3 6 1 4 1 311 21 20
Comment = Microsoft attribute
Description = requestClientInfo

# Hash of private key
OID = 1 3 6 1 4 1 311 21 21
Comment = Microsoft attribute
Description = encryptedKeyHash

OID = 1 3 6 1 4 1 311 21 22
Comment = Microsoft
Description = certsrvCrossCaVersion

OID = 1 3 6 1 4 1 311 25 1
Comment = Microsoft
Description = ntdsReplication

OID = 1 3 6 1 4 1 311 31 1
Comment = Microsoft attribute
Description = productUpdate

# EKU: Health (= proof of compliance with system security policy) certificate
# (This may also be a policy OID rather than an EKU OID)
OID = 1 3 6 1 4 1 311 47 1 1
Comment = Microsoft extended key usage
Description = systemHealth

# EKU: Extended health (= proof of compliance with system security policy)
# certificate   This is an interesting example of the triumph of politics
# over security, the "Health" key usage is meant to indicate compliance with
# a system or corporate security policy, and this key usage is for systems
# that don't comply with the policy but that need a "Health" certificate
# anyway
OID = 1 3 6 1 4 1 311 47 1 3
Comment = Microsoft extended key usage
Description = systemHealthLoophole

OID = 1 3 6 1 4 1 311 60 1 1
Comment = Microsoft policy attribute
Description = rootProgramFlags

OID = 1 3 6 1 4 1 311 61 1 1
Comment = Microsoft enhanced key usage
Description = kernelModeCodeSigning

# CAPICOM original filename (something to do with signed files?)
OID = 1 3 6 1 4 1 311 88 2 1
Comment = Microsoft attribute
Description = originalFilename

# Ascom Systech

OID = 1 3 6 1 4 1 188 7 1 1
Comment = Ascom Systech
Description = ascom

OID = 1 3 6 1 4 1 188 7 1 1 1
Comment = Ascom Systech
Description = ideaECB

OID = 1 3 6 1 4 1 188 7 1 1 2
Comment = Ascom Systech
Description = ideaCBC

OID = 1 3 6 1 4 1 188 7 1 1 3
Comment = Ascom Systech
Description = ideaCFB

OID = 1 3 6 1 4 1 188 7 1 1 4
Comment = Ascom Systech
Description = ideaOFB

# UNINETT

OID = 1 3 6 1 4 1 2428 10 1 1
Comment = UNINETT PCA
Description = UNINETT policyIdentifier

# ICE-TEL

OID = 1 3 6 1 4 1 2712 10
Comment = ICE-TEL CA
Description = ICE-TEL policyIdentifier

OID = 1 3 6 1 4 1 2786 1 1 1
Comment = ICE-TEL CA policy
Description = ICE-TEL Italian policyIdentifier

# cryptlib

OID = 1 3 6 1 4 1 3029 1 1 1
Comment = cryptlib encryption algorithm
Description = blowfishECB

OID = 1 3 6 1 4 1 3029 1 1 2
Comment = cryptlib encryption algorithm
Description = blowfishCBC

OID = 1 3 6 1 4 1 3029 1 1 3
Comment = cryptlib encryption algorithm
Description = blowfishCFB

OID = 1 3 6 1 4 1 3029 1 1 4
Comment = cryptlib encryption algorithm
Description = blowfishOFB

OID = 1 3 6 1 4 1 3029 1 2 1
Comment = cryptlib public-key algorithm
Description = elgamal

OID = 1 3 6 1 4 1 3029 1 2 1 1
Comment = cryptlib public-key algorithm
Description = elgamalWithSHA-1

OID = 1 3 6 1 4 1 3029 1 2 1 2
Comment = cryptlib public-key algorithm
Description = elgamalWithRIPEMD-160

OID = 1 3 6 1 4 1 3029 3 1 1
Comment = cryptlib attribute type
Description = cryptlibPresenceCheck

OID = 1 3 6 1 4 1 3029 3 1 2
Comment = cryptlib attribute type
Description = pkiBoot

OID = 1 3 6 1 4 1 3029 3 1 4
Comment = cryptlib attribute type
Description = crlExtReason

OID = 1 3 6 1 4 1 3029 3 1 5
Comment = cryptlib attribute type
Description = keyFeatures

OID = 1 3 6 1 4 1 3029 4 1
Comment = cryptlib
Description = cryptlibContent

OID = 1 3 6 1 4 1 3029 4 1 1
Comment = cryptlib content type
Description = cryptlibConfigData

OID = 1 3 6 1 4 1 3029 4 1 2
Comment = cryptlib content type
Description = cryptlibUserIndex

OID = 1 3 6 1 4 1 3029 4 1 3
Comment = cryptlib content type
Description = cryptlibUserInfo

OID = 1 3 6 1 4 1 3029 4 1 4
Comment = cryptlib content type
Description = rtcsRequest

OID = 1 3 6 1 4 1 3029 4 1 5
Comment = cryptlib content type
Description = rtcsResponse

OID = 1 3 6 1 4 1 3029 4 1 6
Comment = cryptlib content type
Description = rtcsResponseExt

OID = 1 3 6 1 4 1 3029 42 11172 1
Comment = cryptlib special MPEG-of-cat OID
Description = mpeg-1

# Hex OID = 06 0C 2B 06 01 04 01 97 55 58 59 5A 5A 59, last values are
# 'xyzzy'.
OID = 1 3 6 1 4 1 3029 88 89 90 90 89
Comment = cryptlib certificate policy
Description = xYZZY policyIdentifier

# PGP Inc.

OID = 1 3 6 1 4 1 3401 8 1 1
Comment = PGP key information
Description = pgpExtension

# EDI messaging for TMN Interactive Agents

OID = 1 3 6 1 4 1 3576 7
Comment = TMN EDI for Interactive Agents
Description = eciaAscX12Edi

OID = 1 3 6 1 4 1 3576 7 1
Comment = TMN EDI for Interactive Agents
Description = plainEDImessage

OID = 1 3 6 1 4 1 3576 7 2
Comment = TMN EDI for Interactive Agents
Description = signedEDImessage

OID = 1 3 6 1 4 1 3576 7 5
Comment = TMN EDI for Interactive Agents
Description = integrityEDImessage

OID = 1 3 6 1 4 1 3576 7 65
Comment = TMN EDI for Interactive Agents
Description = iaReceiptMessage

OID = 1 3 6 1 4 1 3576 7 97
Comment = TMN EDI for Interactive Agents
Description = iaStatusMessage

OID = 1 3 6 1 4 1 3576 8
Comment = TMN EDI for Interactive Agents
Description = eciaEdifact

OID = 1 3 6 1 4 1 3576 9
Comment = TMN EDI for Interactive Agents
Description = eciaNonEdi

# Timeproof (www.timeproof.de)

OID = 1 3 6 1 4 1 5472
Comment = enterprise
Description = timeproof

OID = 1 3 6 1 4 1 5472 1
Comment = timeproof
Description = tss

OID = 1 3 6 1 4 1 5472 1 1
Comment = timeproof TSS
Description = tss80

OID = 1 3 6 1 4 1 5472 1 2
Comment = timeproof TSS
Description = tss380

OID = 1 3 6 1 4 1 5472 1 3
Comment = timeproof TSS
Description = tss400

# MEDePass

OID = 1 3 6 1 4 1 5770 0 3
Comment = MEDePass
Description = secondaryPractices

OID = 1 3 6 1 4 1 5770 0 4
Comment = MEDePass
Description = physicianIdentifiers

# Comodo CA

OID = 1 3 6 1 4 1 6449 1 2 1 3 1
Comment = Comodo CA
Description = comodoPolicy

OID = 1 3 6 1 4 1 6449 1 3 5 2
Comment = Comodo CA
Description = comodoCertifiedDeliveryService

# TU Darmstadt ValidityModel
# http://www.cdc.informatik.tu-darmstadt.de/TI/Forschung/FlexiPKI/validitymodel/index.html

OID = 1 3 6 1 4 1 6449 1 3 5 2
Comment = TU Darmstadt ValidityModel
Description = validityModel x

OID = 1 3 6 1 4 1 8301 3 5 1
Comment = TU Darmstadt ValidityModel
Description = validityModelChain

OID = 1 3 6 1 4 1 8301 3 5 2
Comment = ValidityModel
Description = validityModelShell

# Chilean Government

OID = 1 3 6 1 4 1 8231 1
Comment = Chilean Government national unique roll number
Description = rolUnicoNacional

# GNU (GPG) Project

OID = 1 3 6 1 4 1 11591
Comment = GNU Project (see http://www.gnupg.org/oids.html)
Description = gnu

OID = 1 3 6 1 4 1 11591 1
Comment = GNU Radius
Description = gnuRadius

OID = 1 3 6 1 4 1 11591 3
Comment = GNU Radar
Description = gnuRadar

OID = 1 3 6 1 4 1 11591 12
Comment = GNU digest algorithm
Description = gnuDigestAlgorithm

OID = 1 3 6 1 4 1 11591 12 2
Comment = GNU digest algorithm
Description = tiger

OID = 1 3 6 1 4 1 11591 13
Comment = GNU encryption algorithm
Description = gnuEncryptionAlgorithm

OID = 1 3 6 1 4 1 11591 13 2
Comment = GNU encryption algorithm
Description = serpent

OID = 1 3 6 1 4 1 11591 13 2 1
Comment = GNU encryption algorithm
Description = serpent128_ECB

OID = 1 3 6 1 4 1 11591 13 2 2
Comment = GNU encryption algorithm
Description = serpent128_CBC

OID = 1 3 6 1 4 1 11591 13 2 3
Comment = GNU encryption algorithm
Description = serpent128_OFB

OID = 1 3 6 1 4 1 11591 13 2 4
Comment = GNU encryption algorithm
Description = serpent128_CFB

OID = 1 3 6 1 4 1 11591 13 2 21
Comment = GNU encryption algorithm
Description = serpent192_ECB

OID = 1 3 6 1 4 1 11591 13 2 22
Comment = GNU encryption algorithm
Description = serpent192_CBC

OID = 1 3 6 1 4 1 11591 13 2 23
Comment = GNU encryption algorithm
Description = serpent192_OFB

OID = 1 3 6 1 4 1 11591 13 2 24
Comment = GNU encryption algorithm
Description = serpent192_CFB

OID = 1 3 6 1 4 1 11591 13 2 41
Comment = GNU encryption algorithm
Description = serpent256_ECB

OID = 1 3 6 1 4 1 11591 13 2 42
Comment = GNU encryption algorithm
Description = serpent256_CBC

OID = 1 3 6 1 4 1 11591 13 2 43
Comment = GNU encryption algorithm
Description = serpent256_OFB

OID = 1 3 6 1 4 1 11591 13 2 44
Comment = GNU encryption algorithm
Description = serpent256_CFB

# Northrop Grumman Mission Systems

OID = 1 3 6 1 4 1 16334 509 1 1
Comment = Northrop Grumman extended key usage
Description = Northrop Grumman extKeyUsage?

OID = 1 3 6 1 4 1 16334 509 2 1
Comment = Northrop Grumman policy
Description = ngcClass1

OID = 1 3 6 1 4 1 16334 509 2 2
Comment = Northrop Grumman policy
Description = ngcClass2

OID = 1 3 6 1 4 1 16334 509 2 3
Comment = Northrop Grumman policy
Description = ngcClass3

# PKIX

OID = 1 3 6 1 5 5 7
Description = pkix

OID = 1 3 6 1 5 5 7 0 12
Comment = PKIX
Description = attributeCert

OID = 1 3 6 1 5 5 7 1
Comment = PKIX
Description = privateExtension

OID = 1 3 6 1 5 5 7 1 1
Comment = PKIX private extension
Description = authorityInfoAccess

OID = 1 3 6 1 5 5 7 1 2
Comment = PKIX private extension
Description = biometricInfo

OID = 1 3 6 1 5 5 7 1 3
Comment = PKIX private extension
Description = qcStatements

OID = 1 3 6 1 5 5 7 1 4
Comment = PKIX private extension
Description = acAuditIdentity

OID = 1 3 6 1 5 5 7 1 5
Comment = PKIX private extension
Description = acTargeting

OID = 1 3 6 1 5 5 7 1 6
Comment = PKIX private extension
Description = acAaControls

OID = 1 3 6 1 5 5 7 1 7
Comment = PKIX private extension
Description = ipAddrBlocks

OID = 1 3 6 1 5 5 7 1 8
Comment = PKIX private extension
Description = autonomousSysIds

OID = 1 3 6 1 5 5 7 1 9
Comment = PKIX private extension
Description = routerIdentifier

OID = 1 3 6 1 5 5 7 1 10
Comment = PKIX private extension
Description = acProxying

OID = 1 3 6 1 5 5 7 1 11
Comment = PKIX private extension
Description = subjectInfoAccess

OID = 1 3 6 1 5 5 7 1 12
Comment = PKIX private extension
Description = logoType

OID = 1 3 6 1 5 5 7 2
Comment = PKIX
Description = policyQualifierIds

OID = 1 3 6 1 5 5 7 2 1
Comment = PKIX policy qualifier
Description = cps

OID = 1 3 6 1 5 5 7 2 2
Comment = PKIX policy qualifier
Description = unotice

OID = 1 3 6 1 5 5 7 2 3
Comment = PKIX policy qualifier
Description = textNotice

OID = 1 3 6 1 5 5 7 3
Comment = PKIX
Description = keyPurpose

OID = 1 3 6 1 5 5 7 3 1
Comment = PKIX key purpose
Description = serverAuth

OID = 1 3 6 1 5 5 7 3 2
Comment = PKIX key purpose
Description = clientAuth

OID = 1 3 6 1 5 5 7 3 3
Comment = PKIX key purpose
Description = codeSigning

OID = 1 3 6 1 5 5 7 3 4
Comment = PKIX key purpose
Description = emailProtection

OID = 1 3 6 1 5 5 7 3 5
Comment = PKIX key purpose
Description = ipsecEndSystem

OID = 1 3 6 1 5 5 7 3 6
Comment = PKIX key purpose
Description = ipsecTunnel

OID = 1 3 6 1 5 5 7 3 7
Comment = PKIX key purpose
Description = ipsecUser

OID = 1 3 6 1 5 5 7 3 8
Comment = PKIX key purpose
Description = timeStamping

OID = 1 3 6 1 5 5 7 3 9
Comment = PKIX key purpose
Description = ocspSigning

OID = 1 3 6 1 5 5 7 3 10
Comment = PKIX key purpose
Description = dvcs

OID = 1 3 6 1 5 5 7 3 11
Comment = PKIX key purpose
Description = sbgpCertAAServerAuth

OID = 1 3 6 1 5 5 7 3 13
Comment = PKIX key purpose
Description = eapOverPPP

OID = 1 3 6 1 5 5 7 3 14
Comment = PKIX key purpose
Description = wlanSSID

OID = 1 3 6 1 5 5 7 4
Comment = PKIX
Description = cmpInformationTypes

OID = 1 3 6 1 5 5 7 4 1
Comment = PKIX CMP information
Description = caProtEncCert

OID = 1 3 6 1 5 5 7 4 2
Comment = PKIX CMP information
Description = signKeyPairTypes

OID = 1 3 6 1 5 5 7 4 3
Comment = PKIX CMP information
Description = encKeyPairTypes

OID = 1 3 6 1 5 5 7 4 4
Comment = PKIX CMP information
Description = preferredSymmAlg

OID = 1 3 6 1 5 5 7 4 5
Comment = PKIX CMP information
Description = caKeyUpdateInfo

OID = 1 3 6 1 5 5 7 4 6
Comment = PKIX CMP information
Description = currentCRL

OID = 1 3 6 1 5 5 7 4 7
Comment = PKIX CMP information
Description = unsupportedOIDs

OID = 1 3 6 1 5 5 7 4 10
Comment = PKIX CMP information
Description = keyPairParamReq

OID = 1 3 6 1 5 5 7 4 11
Comment = PKIX CMP information
Description = keyPairParamRep

OID = 1 3 6 1 5 5 7 4 12
Comment = PKIX CMP information
Description = revPassphrase

OID = 1 3 6 1 5 5 7 4 13
Comment = PKIX CMP information
Description = implicitConfirm

OID = 1 3 6 1 5 5 7 4 14
Comment = PKIX CMP information
Description = confirmWaitTime

OID = 1 3 6 1 5 5 7 4 15
Comment = PKIX CMP information
Description = origPKIMessage

OID = 1 3 6 1 5 5 7 4 16
Comment = PKIX CMP information
Description = suppLangTags

OID = 1 3 6 1 5 5 7 5
Comment = PKIX
Description = crmfRegistration

OID = 1 3 6 1 5 5 7 5 1
Comment = PKIX CRMF registration
Description = regCtrl

OID = 1 3 6 1 5 5 7 5 1 1
Comment = PKIX CRMF registration control
Description = regToken

OID = 1 3 6 1 5 5 7 5 1 2
Comment = PKIX CRMF registration control
Description = authenticator

OID = 1 3 6 1 5 5 7 5 1 3
Comment = PKIX CRMF registration control
Description = pkiPublicationInfo

OID = 1 3 6 1 5 5 7 5 1 4
Comment = PKIX CRMF registration control
Description = pkiArchiveOptions

OID = 1 3 6 1 5 5 7 5 1 5
Comment = PKIX CRMF registration control
Description = oldCertID

OID = 1 3 6 1 5 5 7 5 1 6
Comment = PKIX CRMF registration control
Description = protocolEncrKey

OID = 1 3 6 1 5 5 7 5 1 7
Comment = PKIX CRMF registration control
Description = altCertTemplate

OID = 1 3 6 1 5 5 7 5 1 8
Comment = PKIX CRMF registration control
Description = wtlsTemplate

OID = 1 3 6 1 5 5 7 5 2
Comment = PKIX CRMF registration
Description = utf8Pairs

OID = 1 3 6 1 5 5 7 5 2 1
Comment = PKIX CRMF registration control
Description = utf8Pairs

OID = 1 3 6 1 5 5 7 5 2 2
Comment = PKIX CRMF registration control
Description = certReq

OID = 1 3 6 1 5 5 7 6
Comment = PKIX
Description = algorithms

OID = 1 3 6 1 5 5 7 6 1
Comment = PKIX algorithm
Description = des40

OID = 1 3 6 1 5 5 7 6 2
Comment = PKIX algorithm
Description = noSignature

OID = 1 3 6 1 5 5 7 6 3
Comment = PKIX algorithm
Description = dh-sig-hmac-sha1

OID = 1 3 6 1 5 5 7 6 4
Comment = PKIX algorithm
Description = dh-pop

OID = 1 3 6 1 5 5 7 7
Comment = PKIX
Description = cmcControls

OID = 1 3 6 1 5 5 7 8
Comment = PKIX
Description = otherNames

OID = 1 3 6 1 5 5 7 8 1
Comment = PKIX other name
Description = personalData

OID = 1 3 6 1 5 5 7 8 2
Comment = PKIX other name
Description = userGroup

OID = 1 3 6 1 5 5 7 9
Comment = PKIX qualified certificates
Description = personalData

OID = 1 3 6 1 5 5 7 9 1
Comment = PKIX personal data
Description = dateOfBirth

OID = 1 3 6 1 5 5 7 9 2
Comment = PKIX personal data
Description = placeOfBirth

OID = 1 3 6 1 5 5 7 9 3
Comment = PKIX personal data
Description = gender

OID = 1 3 6 1 5 5 7 9 4
Comment = PKIX personal data
Description = countryOfCitizenship

OID = 1 3 6 1 5 5 7 9 5
Comment = PKIX personal data
Description = countryOfResidence

OID = 1 3 6 1 5 5 7 10
Comment = PKIX
Description = attributeCertificate

OID = 1 3 6 1 5 5 7 10 1
Comment = PKIX attribute certificate extension
Description = authenticationInfo

OID = 1 3 6 1 5 5 7 10 2
Comment = PKIX attribute certificate extension
Description = accessIdentity

OID = 1 3 6 1 5 5 7 10 3
Comment = PKIX attribute certificate extension
Description = chargingIdentity

OID = 1 3 6 1 5 5 7 10 4
Comment = PKIX attribute certificate extension
Description = group

OID = 1 3 6 1 5 5 7 10 5
Comment = PKIX attribute certificate extension
Description = role

OID = 1 3 6 1 5 5 7 10 6
Comment = PKIX attribute certificate extension
Description = encAttrs

OID = 1 3 6 1 5 5 7 11
Comment = PKIX qualified certificates
Description = personalData

OID = 1 3 6 1 5 5 7 11 1
Comment = PKIX qualified certificates
Description = pkixQCSyntax-v1

OID = 1 3 6 1 5 5 7 14 2
Comment = PKIX policies
Description = resourceCertificatePolicy

OID = 1 3 6 1 5 5 7 20
Comment = PKIX qualified certificates
Description = logo

OID = 1 3 6 1 5 5 7 20 1
Comment = PKIX
Description = logoLoyalty

OID = 1 3 6 1 5 5 7 20 2
Comment = PKIX
Description = logoBackground

# OCSP

OID = 1 3 6 1 5 5 7 48 1
Comment = PKIX
Description = ocsp

OID = 1 3 6 1 5 5 7 48 1 1
Comment = OCSP
Description = ocspBasic

OID = 1 3 6 1 5 5 7 48 1 2
Comment = OCSP
Description = ocspNonce

OID = 1 3 6 1 5 5 7 48 1 3
Comment = OCSP
Description = ocspCRL

OID = 1 3 6 1 5 5 7 48 1 4
Comment = OCSP
Description = ocspResponse

OID = 1 3 6 1 5 5 7 48 1 5
Comment = OCSP
Description = ocspNoCheck

OID = 1 3 6 1 5 5 7 48 1 6
Comment = OCSP
Description = ocspArchiveCutoff

OID = 1 3 6 1 5 5 7 48 1 7
Comment = OCSP
Description = ocspServiceLocator

# Subject/AuthorityInfo types (OCSP is already listed above)

OID = 1 3 6 1 5 5 7 48 2
Comment = PKIX subject/authority info access descriptor
Description = caIssuers

OID = 1 3 6 1 5 5 7 48 3
Comment = PKIX subject/authority info access descriptor
Description = timeStamping

OID = 1 3 6 1 5 5 7 48 4
Comment = PKIX subject/authority info access descriptor
Description = dvcs

OID = 1 3 6 1 5 5 7 48 5
Comment = PKIX subject/authority info access descriptor
Description = caRepository

OID = 1 3 6 1 5 5 7 48 7
Comment = PKIX subject/authority info access descriptor
Description = signedObjectRepository

OID = 1 3 6 1 5 5 7 48 10
Comment = PKIX subject/authority info access descriptor
Description = rpkiManifest

OID = 1 3 6 1 5 5 7 48 11
Comment = PKIX subject/authority info access descriptor
Description = signedObject

# ISAKMP

OID = 1 3 6 1 5 5 8 1 1
Comment = ISAKMP HMAC algorithm
Description = hmacMD5

OID = 1 3 6 1 5 5 8 1 2
Comment = ISAKMP HMAC algorithm
Description = hmacSHA

OID = 1 3 6 1 5 5 8 1 3
Comment = ISAKMP HMAC algorithm
Description = hmacTiger

OID = 1 3 6 1 5 5 8 2 2
Comment = IKE ???
Description = iKEIntermediate

# DEC (via ECMA)

OID = 1 3 12 2 1011 7 1
Comment = DASS algorithm
Description = decEncryptionAlgorithm

OID = 1 3 12 2 1011 7 1 2
Comment = DASS encryption algorithm
Description = decDEA

OID = 1 3 12 2 1011 7 2
Comment = DASS algorithm
Description = decHashAlgorithm

OID = 1 3 12 2 1011 7 2 1
Comment = DASS hash algorithm
Description = decMD2

OID = 1 3 12 2 1011 7 2 2
Comment = DASS hash algorithm
Description = decMD4

OID = 1 3 12 2 1011 7 3
Comment = DASS algorithm
Description = decSignatureAlgorithm

OID = 1 3 12 2 1011 7 3 1
Comment = DASS signature algorithm
Description = decMD2withRSA

OID = 1 3 12 2 1011 7 3 2
Comment = DASS signature algorithm
Description = decMD4withRSA

OID = 1 3 12 2 1011 7 3 3
Comment = DASS signature algorithm
Description = decDEAMAC

# NIST Open Systems Environment (OSE) Implementor's Workshop (OIW),
# specialising in oddball and partially-defunct OIDs

OID = 1 3 14 2 26 5
Comment = Unsure about this OID
Description = sha

OID = 1 3 14 3 2 1 1
Comment = X.509. Unsure about this OID
Description = rsa

OID = 1 3 14 3 2 2
Comment = Oddball OIW OID
Description = md4WitRSA

OID = 1 3 14 3 2 3
Comment = Oddball OIW OID
Description = md5WithRSA

OID = 1 3 14 3 2 4
Comment = Oddball OIW OID
Description = md4WithRSAEncryption

OID = 1 3 14 3 2 2 1
Comment = X.509. Deprecated
Description = sqmod-N
Warning

OID = 1 3 14 3 2 3 1
Comment = X.509. Deprecated
Description = sqmod-NwithRSA
Warning

OID = 1 3 14 3 2 6
Description = desECB

OID = 1 3 14 3 2 7
Description = desCBC

OID = 1 3 14 3 2 8
Description = desOFB

OID = 1 3 14 3 2 9
Description = desCFB

OID = 1 3 14 3 2 10
Description = desMAC

OID = 1 3 14 3 2 11
Comment = ISO 9796-2, also X9.31 Part 1
Description = rsaSignature

OID = 1 3 14 3 2 12
Comment = OIW?, supposedly from an incomplete version of SDN.701 (doesn't match final SDN.701)
Description = dsa
Warning

OID = 1 3 14 3 2 13
Comment = Oddball OIW OID.  Incorrectly used by JDK 1.1 in place of (1 3 14 3 2 27)
# Their response was that they know it's wrong, but noone uses SHA0 so it won't
# cause any problems, right?
Description = dsaWithSHA
Warning

# The various md<x>WithRSASignature OIDs are for the ANSI X9.31 draft and use
# ISO 9796-2 padding rules.  This work was derailed during the PKP brouhaha and
# is still in progress (and probably will remain so)
OID = 1 3 14 3 2 14
Comment = Oddball OIW OID using 9796-2 padding rules
Description = mdc2WithRSASignature

OID = 1 3 14 3 2 15
Comment = Oddball OIW OID using 9796-2 padding rules
Description = shaWithRSASignature

OID = 1 3 14 3 2 16
Comment = Oddball OIW OID. Deprecated, use a plain DH OID instead
Description = dhWithCommonModulus
Warning

OID = 1 3 14 3 2 17
Comment = Oddball OIW OID. Mode is ECB
Description = desEDE

OID = 1 3 14 3 2 18
Comment = Oddball OIW OID
Description = sha

OID = 1 3 14 3 2 19
Comment = Oddball OIW OID, DES-based hash, planned for X9.31 Part 2
Description = mdc-2

OID = 1 3 14 3 2 20
Comment = Oddball OIW OID.  Deprecated, use a plain DSA OID instead
Description = dsaCommon
Warning

OID = 1 3 14 3 2 21
Comment = Oddball OIW OID.  Deprecated, use a plain dsaWithSHA OID instead
Description = dsaCommonWithSHA
Warning

OID = 1 3 14 3 2 22
Comment = Oddball OIW OID
Description = rsaKeyTransport

OID = 1 3 14 3 2 23
Comment = Oddball OIW OID
Description = keyed-hash-seal

OID = 1 3 14 3 2 24
Comment = Oddball OIW OID using 9796-2 padding rules
Description = md2WithRSASignature

OID = 1 3 14 3 2 25
Comment = Oddball OIW OID using 9796-2 padding rules
Description = md5WithRSASignature

OID = 1 3 14 3 2 26
Comment = OIW
Description = sha1

# Yet another multiply-assigned OID
OID = 1 3 14 3 2 27
Comment = OIW. This OID may also be assigned as ripemd-160
Description = dsaWithSHA1

OID = 1 3 14 3 2 28
Comment = OIW
Description = dsaWithCommonSHA1

OID = 1 3 14 3 2 29
Comment = Oddball OIW OID
Description = sha-1WithRSAEncryption

OID = 1 3 14 3 3 1
Comment = Oddball OIW OID
Description = simple-strong-auth-mechanism

OID = 1 3 14 7 2 1 1
Comment = Unsure about this OID
Description = ElGamal

OID = 1 3 14 7 2 3 1
Comment = Unsure about this OID
Description = md2WithRSA

OID = 1 3 14 7 2 3 2
Comment = Unsure about this OID
Description = md2WithElGamal

# Teletrust

OID = 1 3 36 1
Comment = Teletrust document
Description = document

OID = 1 3 36 1 1
Comment = Teletrust document
Description = finalVersion

OID = 1 3 36 1 2
Comment = Teletrust document
Description = draft

OID = 1 3 36 2
Comment = Teletrust sio
Description = sio

OID = 1 3 36 2 1
Comment = Teletrust sio
Description = sedu

OID = 1 3 36 3
Comment = Teletrust algorithm
Description = algorithm

OID = 1 3 36 3 1
Comment = Teletrust algorithm
Description = encryptionAlgorithm

OID = 1 3 36 3 1 1
Comment = Teletrust encryption algorithm
Description = des

OID = 1 3 36 3 1 1 1
Comment = Teletrust encryption algorithm
Description = desECB_pad

OID = 1 3 36 3 1 1 1 1
Comment = Teletrust encryption algorithm
Description = desECB_ISOpad

OID = 1 3 36 3 1 1 2 1
Comment = Teletrust encryption algorithm
Description = desCBC_pad

OID = 1 3 36 3 1 1 2 1 1
Comment = Teletrust encryption algorithm
Description = desCBC_ISOpad

OID = 1 3 36 3 1 3
Comment = Teletrust encryption algorithm
Description = des_3

OID = 1 3 36 3 1 3 1 1
Comment = Teletrust encryption algorithm. EDE triple DES
Description = des_3ECB_pad

OID = 1 3 36 3 1 3 1 1 1
Comment = Teletrust encryption algorithm. EDE triple DES
Description = des_3ECB_ISOpad

OID = 1 3 36 3 1 3 2 1
Comment = Teletrust encryption algorithm. EDE triple DES
Description = des_3CBC_pad

OID = 1 3 36 3 1 3 2 1 1
Comment = Teletrust encryption algorithm. EDE triple DES
Description = des_3CBC_ISOpad

OID = 1 3 36 3 1 2
Comment = Teletrust encryption algorithm
Description = idea

OID = 1 3 36 3 1 2 1
Comment = Teletrust encryption algorithm
Description = ideaECB

OID = 1 3 36 3 1 2 1 1
Comment = Teletrust encryption algorithm
Description = ideaECB_pad

OID = 1 3 36 3 1 2 1 1 1
Comment = Teletrust encryption algorithm
Description = ideaECB_ISOpad

OID = 1 3 36 3 1 2 2
Comment = Teletrust encryption algorithm
Description = ideaCBC

OID = 1 3 36 3 1 2 2 1
Comment = Teletrust encryption algorithm
Description = ideaCBC_pad

OID = 1 3 36 3 1 2 2 1 1
Comment = Teletrust encryption algorithm
Description = ideaCBC_ISOpad

OID = 1 3 36 3 1 2 3
Comment = Teletrust encryption algorithm
Description = ideaOFB

OID = 1 3 36 3 1 2 4
Comment = Teletrust encryption algorithm
Description = ideaCFB

OID = 1 3 36 3 1 4
Comment = Teletrust encryption algorithm
Description = rsaEncryption

OID = 1 3 36 3 1 4 512 17
Comment = Teletrust encryption algorithm
Description = rsaEncryptionWithlmod512expe17

OID = 1 3 36 3 1 5
Comment = Teletrust encryption algorithm
Description = bsi-1

OID = 1 3 36 3 1 5 1
Comment = Teletrust encryption algorithm
Description = bsi_1ECB_pad

OID = 1 3 36 3 1 5 2
Comment = Teletrust encryption algorithm
Description = bsi_1CBC_pad

OID = 1 3 36 3 1 5 2 1
Comment = Teletrust encryption algorithm
Description = bsi_1CBC_PEMpad

OID = 1 3 36 3 2
Comment = Teletrust algorithm
Description = hashAlgorithm

OID = 1 3 36 3 2 1
Comment = Teletrust hash algorithm
Description = ripemd160

OID = 1 3 36 3 2 2
Comment = Teletrust hash algorithm
Description = ripemd128

OID = 1 3 36 3 2 3
Comment = Teletrust hash algorithm
Description = ripemd256

OID = 1 3 36 3 2 4
Comment = Teletrust hash algorithm
Description = mdc2singleLength

OID = 1 3 36 3 2 5
Comment = Teletrust hash algorithm
Description = mdc2doubleLength

OID = 1 3 36 3 3
Comment = Teletrust algorithm
Description = signatureAlgorithm

OID = 1 3 36 3 3 1
Comment = Teletrust signature algorithm
Description = rsaSignature

OID = 1 3 36 3 3 1 1
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1

# What *were* they thinking?
OID = 1 3 36 3 3 1 1 512 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l512_l2
OID = 1 3 36 3 3 1 1 640 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l640_l2
OID = 1 3 36 3 3 1 1 768 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l768_l2
OID = 1 3 36 3 3 1 1 896 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l896_l2
OID = 1 3 36 3 3 1 1 1024 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l1024_l2
OID = 1 3 36 3 3 1 1 512 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l512_l3
OID = 1 3 36 3 3 1 1 640 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l640_l3
OID = 1 3 36 3 3 1 1 768 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l768_l3
OID = 1 3 36 3 3 1 1 896 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l896_l3
OID = 1 3 36 3 3 1 1 1024 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l1024_l3
OID = 1 3 36 3 3 1 1 512 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l512_l5
OID = 1 3 36 3 3 1 1 640 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l640_l5
OID = 1 3 36 3 3 1 1 768 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l768_l5
OID = 1 3 36 3 3 1 1 896 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l896_l5
OID = 1 3 36 3 3 1 1 1024 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l1024_l5
OID = 1 3 36 3 3 1 1 512 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l512_l9
OID = 1 3 36 3 3 1 1 640 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l640_l9
OID = 1 3 36 3 3 1 1 768 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l768_l9
OID = 1 3 36 3 3 1 1 896 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l896_l9
OID = 1 3 36 3 3 1 1 1024 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l1024_l9
OID = 1 3 36 3 3 1 1 512 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l512_l11
OID = 1 3 36 3 3 1 1 640 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l640_l11
OID = 1 3 36 3 3 1 1 768 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l768_l11
OID = 1 3 36 3 3 1 1 896 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l896_l11
OID = 1 3 36 3 3 1 1 1024 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithsha1_l1024_l11

OID = 1 3 36 3 3 1 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160

OID = 1 3 36 3 3 1 2 512 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l512_l2
OID = 1 3 36 3 3 1 2 640 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l640_l2
OID = 1 3 36 3 3 1 2 768 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l768_l2
OID = 1 3 36 3 3 1 2 896 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l896_l2
OID = 1 3 36 3 3 1 2 1024 2
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l1024_l2
OID = 1 3 36 3 3 1 2 512 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l512_l3
OID = 1 3 36 3 3 1 2 640 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l640_l3
OID = 1 3 36 3 3 1 2 768 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l768_l3
OID = 1 3 36 3 3 1 2 896 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l896_l3
OID = 1 3 36 3 3 1 2 1024 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l1024_l3
OID = 1 3 36 3 3 1 2 512 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l512_l5
OID = 1 3 36 3 3 1 2 640 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l640_l5
OID = 1 3 36 3 3 1 2 768 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l768_l5
OID = 1 3 36 3 3 1 2 896 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l896_l5
OID = 1 3 36 3 3 1 2 1024 5
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l1024_l5
OID = 1 3 36 3 3 1 2 512 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l512_l9
OID = 1 3 36 3 3 1 2 640 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l640_l9
OID = 1 3 36 3 3 1 2 768 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l768_l9
OID = 1 3 36 3 3 1 2 896 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l896_l9
OID = 1 3 36 3 3 1 2 1024 9
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l1024_l9
OID = 1 3 36 3 3 1 2 512 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l512_l11
OID = 1 3 36 3 3 1 2 640 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l640_l11
OID = 1 3 36 3 3 1 2 768 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l768_l11
OID = 1 3 36 3 3 1 2 896 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l896_l11
OID = 1 3 36 3 3 1 2 1024 11
Comment = Teletrust signature algorithm
Description = rsaSignatureWithripemd160_l1024_l11

OID = 1 3 36 3 3 1 3
Comment = Teletrust signature algorithm
Description = rsaSignatureWithrimpemd128

OID = 1 3 36 3 3 1 4
Comment = Teletrust signature algorithm
Description = rsaSignatureWithrimpemd256

OID = 1 3 36 3 3 2
Comment = Teletrust signature algorithm
Description = ecsieSign

OID = 1 3 36 3 3 2 1
Comment = Teletrust signature algorithm
Description = ecsieSignWithsha1

OID = 1 3 36 3 3 2 2
Comment = Teletrust signature algorithm
Description = ecsieSignWithripemd160

OID = 1 3 36 3 3 2 3
Comment = Teletrust signature algorithm
Description = ecsieSignWithmd2

OID = 1 3 36 3 3 2 4
Comment = Teletrust signature algorithm
Description = ecsieSignWithmd5

# Brainpool ECC Curves.  Note that these fall under the Teletrust ECC
# signature algorithm arc (ecsieSign, 1 3 36 3 3 2) but they're listed
# separately here because they were standardised under the Brainpool
# initiative.

OID = 1 3 36 3 3 2 8 1 1 1
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP160r1

OID = 1 3 36 3 3 2 8 1 1 2
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP160t1

OID = 1 3 36 3 3 2 8 1 1 3
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP192r1

OID = 1 3 36 3 3 2 8 1 1 4
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP192t1

OID = 1 3 36 3 3 2 8 1 1 5
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP224r1

OID = 1 3 36 3 3 2 8 1 1 6
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP224t1

OID = 1 3 36 3 3 2 8 1 1 7
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP256r1

OID = 1 3 36 3 3 2 8 1 1 8
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP256t1

OID = 1 3 36 3 3 2 8 1 1 9
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP320r1

OID = 1 3 36 3 3 2 8 1 1 10
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP320t1

OID = 1 3 36 3 3 2 8 1 1 11
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP384r1

OID = 1 3 36 3 3 2 8 1 1 12
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP384t1

OID = 1 3 36 3 3 2 8 1 1 13
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP512r1

OID = 1 3 36 3 3 2 8 1 1 14
Comment = ECC Brainpool Standard Curves and Curve Generation
Description = brainpoolP512t1

OID = 1 3 36 3 4
Comment = Teletrust algorithm
Description = signatureScheme

OID = 1 3 36 3 4 1
Comment = Teletrust signature scheme
Description = sigS_ISO9796-1

OID = 1 3 36 3 4 2
Comment = Teletrust signature scheme
Description = sigS_ISO9796-2

OID = 1 3 36 3 4 2 1
Comment = Teletrust signature scheme. Unsure what this is supposed to be
Description = sigS_ISO9796-2Withred

OID = 1 3 36 3 4 2 2
Comment = Teletrust signature scheme. Unsure what this is supposed to be
Description = sigS_ISO9796-2Withrsa

OID = 1 3 36 3 4 2 3
Comment = Teletrust signature scheme. 9796-2 with random number in padding field
Description = sigS_ISO9796-2Withrnd

OID = 1 3 36 4
Comment = Teletrust attribute
Description = attribute

OID = 1 3 36 5
Comment = Teletrust policy
Description = policy

OID = 1 3 36 6
Comment = Teletrust API
Description = api

OID = 1 3 36 6 1
Comment = Teletrust API
Description = manufacturer-specific_api

OID = 1 3 36 6 1 1
Comment = Teletrust API
Description = utimaco-api

OID = 1 3 36 6 2
Comment = Teletrust API
Description = functionality-specific_api

OID = 1 3 36 7
Comment = Teletrust key management
Description = keymgmnt

OID = 1 3 36 7 1
Comment = Teletrust key management
Description = keyagree

OID = 1 3 36 7 1 1
Comment = Teletrust key management
Description = bsiPKE

OID = 1 3 36 7 2
Comment = Teletrust key management
Description = keytrans

OID = 1 3 36 7 2 1
Comment = Teletrust key management. 9796-2 with key stored in hash field
Description = encISO9796-2Withrsa

OID = 1 3 36 8 1 1
Comment = Teletrust policy
Description = Teletrust SigGConform policyIdentifier

OID = 1 3 36 8 2 1
Comment = Teletrust extended key usage
Description = directoryService

OID = 1 3 36 8 3 1
Comment = Teletrust attribute
Description = dateOfCertGen

OID = 1 3 36 8 3 2
Comment = Teletrust attribute
Description = procuration

OID = 1 3 36 8 3 3
Comment = Teletrust attribute
Description = admission

OID = 1 3 36 8 3 4
Comment = Teletrust attribute
Description = monetaryLimit

OID = 1 3 36 8 3 5
Comment = Teletrust attribute
Description = declarationOfMajority

OID = 1 3 36 8 3 6
Comment = Teletrust attribute
Description = integratedCircuitCardSerialNumber

OID = 1 3 36 8 3 7
Comment = Teletrust attribute
Description = pKReference

OID = 1 3 36 8 3 8
Comment = Teletrust attribute
Description = restriction

OID = 1 3 36 8 3 9
Comment = Teletrust attribute
Description = retrieveIfAllowed

OID = 1 3 36 8 3 10
Comment = Teletrust attribute
Description = requestedCertificate

# The following are left in German because there's no clear
# equivalent for many of the terms in English.  Tut mir sorry.
# (Note that they actually genderise the OIDs, which is quite
# bizarre since they're simply role identifiers.  Being
# courteous, they let the, um, female OIDs go first).
OID = 1 3 36 8 3 11
Comment = Teletrust attribute
Description = namingAuthorities

OID = 1 3 36 8 3 11 1
Comment = Teletrust naming authorities
Description = rechtWirtschaftSteuern

OID = 1 3 36 8 3 11 1 1
Comment = Teletrust ProfessionInfo
Description = rechtsanwaeltin

OID = 1 3 36 8 3 11 1 2
Comment = Teletrust ProfessionInfo
Description = rechtsanwalt

OID = 1 3 36 8 3 11 1 3
Comment = Teletrust ProfessionInfo
Description = rechtsBeistand

OID = 1 3 36 8 3 11 1 4
Comment = Teletrust ProfessionInfo
Description = steuerBeraterin

OID = 1 3 36 8 3 11 1 5
Comment = Teletrust ProfessionInfo
Description = steuerBerater

OID = 1 3 36 8 3 11 1 6
Comment = Teletrust ProfessionInfo
Description = steuerBevollmaechtigte

OID = 1 3 36 8 3 11 1 7
Comment = Teletrust ProfessionInfo
Description = steuerBevollmaechtigter

OID = 1 3 36 8 3 11 1 8
Comment = Teletrust ProfessionInfo
Description = notarin

OID = 1 3 36 8 3 11 1 9
Comment = Teletrust ProfessionInfo
Description = notar

OID = 1 3 36 8 3 11 1 10
Comment = Teletrust ProfessionInfo
Description = notarVertreterin

OID = 1 3 36 8 3 11 1 11
Comment = Teletrust ProfessionInfo
Description = notarVertreter

OID = 1 3 36 8 3 11 1 12
Comment = Teletrust ProfessionInfo
Description = notariatsVerwalterin

OID = 1 3 36 8 3 11 1 13
Comment = Teletrust ProfessionInfo
Description = notariatsVerwalter

OID = 1 3 36 8 3 11 1 14
Comment = Teletrust ProfessionInfo
Description = wirtschaftsPrueferin

OID = 1 3 36 8 3 11 1 15
Comment = Teletrust ProfessionInfo
Description = wirtschaftsPruefer

OID = 1 3 36 8 3 11 1 16
Comment = Teletrust ProfessionInfo
Description = vereidigteBuchprueferin

OID = 1 3 36 8 3 11 1 17
Comment = Teletrust ProfessionInfo
Description = vereidigterBuchpruefer

OID = 1 3 36 8 3 11 1 18
Comment = Teletrust ProfessionInfo
Description = patentAnwaeltin

OID = 1 3 36 8 3 11 1 19
Comment = Teletrust ProfessionInfo
Description = patentAnwalt

OID = 1 3 36 8 3 12
Comment = Teletrust OCSP attribute (obsolete)
Description = certInDirSince
Warning

OID = 1 3 36 8 3 13
Comment = Teletrust OCSP attribute
Description = certHash

OID = 1 3 36 8 3 14
Comment = Teletrust attribute
Description = nameAtBirth

OID = 1 3 36 8 3 15
Comment = Teletrust attribute
Description = additionalInformation

OID = 1 3 36 8 4 1
Comment = Teletrust OtherName attribute
Description = personalData

OID = 1 3 36 8 4 8
Comment = Teletrust attribute certificate attribute
Description = restriction

OID = 1 3 36 8 5 1 1 1
Comment = Teletrust signature algorithm
Description = rsaIndicateSHA1

OID = 1 3 36 8 5 1 1 2
Comment = Teletrust signature algorithm
Description = rsaIndicateRIPEMD160

OID = 1 3 36 8 5 1 1 3
Comment = Teletrust signature algorithm
Description = rsaWithSHA1

OID = 1 3 36 8 5 1 1 4
Comment = Teletrust signature algorithm
Description = rsaWithRIPEMD160

OID = 1 3 36 8 5 1 2 1
Comment = Teletrust signature algorithm
Description = dsaExtended

OID = 1 3 36 8 5 1 2 2
Comment = Teletrust signature algorithm
Description = dsaWithRIPEMD160

OID = 1 3 36 8 6 1
Comment = Teletrust signature attributes
Description = cert

OID = 1 3 36 8 6 2
Comment = Teletrust signature attributes
Description = certRef

OID = 1 3 36 8 6 3
Comment = Teletrust signature attributes
Description = attrCert

OID = 1 3 36 8 6 4
Comment = Teletrust signature attributes
Description = attrRef

OID = 1 3 36 8 6 5
Comment = Teletrust signature attributes
Description = fileName

OID = 1 3 36 8 6 6
Comment = Teletrust signature attributes
Description = storageTime

OID = 1 3 36 8 6 7
Comment = Teletrust signature attributes
Description = fileSize

OID = 1 3 36 8 6 8
Comment = Teletrust signature attributes
Description = location

OID = 1 3 36 8 6 9
Comment = Teletrust signature attributes
Description = sigNumber

OID = 1 3 36 8 6 10
Comment = Teletrust signature attributes
Description = autoGen

OID = 1 3 36 8 7 1 1
Comment = Teletrust presentation types
Description = ptAdobeILL

OID = 1 3 36 8 7 1 2
Comment = Teletrust presentation types
Description = ptAmiPro

OID = 1 3 36 8 7 1 3
Comment = Teletrust presentation types
Description = ptAutoCAD

OID = 1 3 36 8 7 1 4
Comment = Teletrust presentation types
Description = ptBinary

OID = 1 3 36 8 7 1 5
Comment = Teletrust presentation types
Description = ptBMP

OID = 1 3 36 8 7 1 6
Comment = Teletrust presentation types
Description = ptCGM

OID = 1 3 36 8 7 1 7
Comment = Teletrust presentation types
Description = ptCorelCRT

OID = 1 3 36 8 7 1 8
Comment = Teletrust presentation types
Description = ptCorelDRW

OID = 1 3 36 8 7 1 9
Comment = Teletrust presentation types
Description = ptCorelEXC

OID = 1 3 36 8 7 1 10
Comment = Teletrust presentation types
Description = ptCorelPHT

OID = 1 3 36 8 7 1 11
Comment = Teletrust presentation types
Description = ptDraw

OID = 1 3 36 8 7 1 12
Comment = Teletrust presentation types
Description = ptDVI

OID = 1 3 36 8 7 1 13
Comment = Teletrust presentation types
Description = ptEPS

OID = 1 3 36 8 7 1 14
Comment = Teletrust presentation types
Description = ptExcel

OID = 1 3 36 8 7 1 15
Comment = Teletrust presentation types
Description = ptGEM

OID = 1 3 36 8 7 1 16
Comment = Teletrust presentation types
Description = ptGIF

OID = 1 3 36 8 7 1 17
Comment = Teletrust presentation types
Description = ptHPGL

OID = 1 3 36 8 7 1 18
Comment = Teletrust presentation types
Description = ptJPEG

OID = 1 3 36 8 7 1 19
Comment = Teletrust presentation types
Description = ptKodak

OID = 1 3 36 8 7 1 20
Comment = Teletrust presentation types
Description = ptLaTeX

OID = 1 3 36 8 7 1 21
Comment = Teletrust presentation types
Description = ptLotus

OID = 1 3 36 8 7 1 22
Comment = Teletrust presentation types
Description = ptLotusPIC

OID = 1 3 36 8 7 1 23
Comment = Teletrust presentation types
Description = ptMacPICT

OID = 1 3 36 8 7 1 24
Comment = Teletrust presentation types
Description = ptMacWord

OID = 1 3 36 8 7 1 25
Comment = Teletrust presentation types
Description = ptMSWfD

OID = 1 3 36 8 7 1 26
Comment = Teletrust presentation types
Description = ptMSWord

OID = 1 3 36 8 7 1 27
Comment = Teletrust presentation types
Description = ptMSWord2

OID = 1 3 36 8 7 1 28
Comment = Teletrust presentation types
Description = ptMSWord6

OID = 1 3 36 8 7 1 29
Comment = Teletrust presentation types
Description = ptMSWord8

OID = 1 3 36 8 7 1 30
Comment = Teletrust presentation types
Description = ptPDF

OID = 1 3 36 8 7 1 31
Comment = Teletrust presentation types
Description = ptPIF

OID = 1 3 36 8 7 1 32
Comment = Teletrust presentation types
Description = ptPostscript

OID = 1 3 36 8 7 1 33
Comment = Teletrust presentation types
Description = ptRTF

OID = 1 3 36 8 7 1 34
Comment = Teletrust presentation types
Description = ptSCITEX

OID = 1 3 36 8 7 1 35
Comment = Teletrust presentation types
Description = ptTAR

OID = 1 3 36 8 7 1 36
Comment = Teletrust presentation types
Description = ptTarga

OID = 1 3 36 8 7 1 37
Comment = Teletrust presentation types
Description = ptTeX

OID = 1 3 36 8 7 1 38
Comment = Teletrust presentation types
Description = ptText

OID = 1 3 36 8 7 1 39
Comment = Teletrust presentation types
Description = ptTIFF

OID = 1 3 36 8 7 1 40
Comment = Teletrust presentation types
Description = ptTIFF-FC

OID = 1 3 36 8 7 1 41
Comment = Teletrust presentation types
Description = ptUID

OID = 1 3 36 8 7 1 42
Comment = Teletrust presentation types
Description = ptUUEncode

OID = 1 3 36 8 7 1 43
Comment = Teletrust presentation types
Description = ptWMF

OID = 1 3 36 8 7 1 43
Comment = Teletrust presentation types
Description = ptWordPerfect x

OID = 1 3 36 8 7 1 45
Comment = Teletrust presentation types
Description = ptWPGrph

# Thawte

OID = 1 3 101 1 4
Comment = Thawte
Description = thawte-ce

OID = 1 3 101 1 4 1
Comment = Thawte certificate extension
Description = strongExtranet

# SECG (Standards for Efficient Cryptography Group), who are just
# Certicom "All your curves are belong to us" named elliptic curves

OID = 1 3 132 0 1
Comment = SECG (Certicom) named elliptic curve
Description = sect163k1

OID = 1 3 132 0 2
Comment = SECG (Certicom) named elliptic curve
Description = sect163r1

OID = 1 3 132 0 3
Comment = SECG (Certicom) named elliptic curve
Description = sect239k1

OID = 1 3 132 0 4
Comment = SECG (Certicom) named elliptic curve
Description = sect113r1

OID = 1 3 132 0 5
Comment = SECG (Certicom) named elliptic curve
Description = sect113r2

OID = 1 3 132 0 6
Comment = SECG (Certicom) named elliptic curve
Description = secp112r1

OID = 1 3 132 0 7
Comment = SECG (Certicom) named elliptic curve
Description = secp112r2

OID = 1 3 132 0 8
Comment = SECG (Certicom) named elliptic curve
Description = secp160r1

OID = 1 3 132 0 9
Comment = SECG (Certicom) named elliptic curve
Description = secp160k1

OID = 1 3 132 0 10
Comment = SECG (Certicom) named elliptic curve
Description = secp256k1

OID = 1 3 132 0 15
Comment = SECG (Certicom) named elliptic curve
Description = sect163r2

OID = 1 3 132 0 16
Comment = SECG (Certicom) named elliptic curve
Description = sect283k1

OID = 1 3 132 0 17
Comment = SECG (Certicom) named elliptic curve
Description = sect283r1

OID = 1 3 132 0 22
Comment = SECG (Certicom) named elliptic curve
Description = sect131r1

OID = 1 3 132 0 23
Comment = SECG (Certicom) named elliptic curve
Description = sect131r2

OID = 1 3 132 0 24
Comment = SECG (Certicom) named elliptic curve
Description = sect193r1

OID = 1 3 132 0 25
Comment = SECG (Certicom) named elliptic curve
Description = sect193r2

OID = 1 3 132 0 26
Comment = SECG (Certicom) named elliptic curve
Description = sect233k1

OID = 1 3 132 0 27
Comment = SECG (Certicom) named elliptic curve
Description = sect233r1

OID = 1 3 132 0 28
Comment = SECG (Certicom) named elliptic curve
Description = secp128r1

OID = 1 3 132 0 29
Comment = SECG (Certicom) named elliptic curve
Description = secp128r2

OID = 1 3 132 0 30
Comment = SECG (Certicom) named elliptic curve
Description = secp160r2

OID = 1 3 132 0 31
Comment = SECG (Certicom) named elliptic curve
Description = secp192k1

OID = 1 3 132 0 32
Comment = SECG (Certicom) named elliptic curve
Description = secp224k1

OID = 1 3 132 0 33
Comment = SECG (Certicom) named elliptic curve
Description = secp224r1

OID = 1 3 132 0 34
Comment = SECG (Certicom) named elliptic curve
Description = secp384r1

OID = 1 3 132 0 35
Comment = SECG (Certicom) named elliptic curve
Description = secp521r1

OID = 1 3 132 0 36
Comment = SECG (Certicom) named elliptic curve
Description = sect409k1

OID = 1 3 132 0 37
Comment = SECG (Certicom) named elliptic curve
Description = sect409r1

OID = 1 3 132 0 38
Comment = SECG (Certicom) named elliptic curve
Description = sect571k1

OID = 1 3 132 0 39
Comment = SECG (Certicom) named elliptic curve
Description = sect571r1

# X.520.  X.500v4 added encrypted versions of most of these attributes
# at n+2 (i.e. foo = 2 4 5 1, encryptedFoo = 2 4 5 1 2), this smells
# like a horrible kludge for something and probably isn't used, so we
# don't define them all here.

OID = 2 5 4 0
Comment = X.520 DN component
Description = objectClass

OID = 2 5 4 1
Comment = X.520 DN component
Description = aliasedEntryName

OID = 2 5 4 2
Comment = X.520 DN component
Description = knowledgeInformation

OID = 2 5 4 3
Comment = X.520 DN component
Description = commonName

OID = 2 5 4 4
Comment = X.520 DN component
Description = surname

OID = 2 5 4 5
Comment = X.520 DN component
Description = serialNumber

OID = 2 5 4 6
Comment = X.520 DN component
Description = countryName

OID = 2 5 4 7
Comment = X.520 DN component
Description = localityName

OID = 2 5 4 7 1
Comment = X.520 DN component
Description = collectiveLocalityName

OID = 2 5 4 8
Comment = X.520 DN component
Description = stateOrProvinceName

OID = 2 5 4 8 1
Comment = X.520 DN component
Description = collectiveStateOrProvinceName

OID = 2 5 4 9
Comment = X.520 DN component
Description = streetAddress

OID = 2 5 4 9 1
Comment = X.520 DN component
Description = collectiveStreetAddress

OID = 2 5 4 10
Comment = X.520 DN component
Description = organizationName

OID = 2 5 4 10 1
Comment = X.520 DN component
Description = collectiveOrganizationName

OID = 2 5 4 11
Comment = X.520 DN component
Description = organizationalUnitName

OID = 2 5 4 11 1
Comment = X.520 DN component
Description = collectiveOrganizationalUnitName

OID = 2 5 4 12
Comment = X.520 DN component
Description = title

OID = 2 5 4 13
Comment = X.520 DN component
Description = description

OID = 2 5 4 14
Comment = X.520 DN component
Description = searchGuide

OID = 2 5 4 15
Comment = X.520 DN component
Description = businessCategory

OID = 2 5 4 16
Comment = X.520 DN component
Description = postalAddress

OID = 2 5 4 16 1
Comment = X.520 DN component
Description = collectivePostalAddress

OID = 2 5 4 17
Comment = X.520 DN component
Description = postalCode

OID = 2 5 4 17 1
Comment = X.520 DN component
Description = collectivePostalCode

OID = 2 5 4 18
Comment = X.520 DN component
Description = postOfficeBox

OID = 2 5 4 18 1
Comment = X.520 DN component
Description = collectivePostOfficeBox

OID = 2 5 4 19
Comment = X.520 DN component
Description = physicalDeliveryOfficeName

OID = 2 5 4 19 1
Comment = X.520 DN component
Description = collectivePhysicalDeliveryOfficeName

OID = 2 5 4 20
Comment = X.520 DN component
Description = telephoneNumber

OID = 2 5 4 20 1
Comment = X.520 DN component
Description = collectiveTelephoneNumber

OID = 2 5 4 21
Comment = X.520 DN component
Description = telexNumber

OID = 2 5 4 21 1
Comment = X.520 DN component
Description = collectiveTelexNumber

OID = 2 5 4 22
Comment = X.520 DN component
Description = teletexTerminalIdentifier

OID = 2 5 4 22 1
Comment = X.520 DN component
Description = collectiveTeletexTerminalIdentifier

OID = 2 5 4 23
Comment = X.520 DN component
Description = facsimileTelephoneNumber

OID = 2 5 4 23 1
Comment = X.520 DN component
Description = collectiveFacsimileTelephoneNumber

OID = 2 5 4 24
Comment = X.520 DN component
Description = x121Address

OID = 2 5 4 25
Comment = X.520 DN component
Description = internationalISDNNumber

OID = 2 5 4 25 1
Comment = X.520 DN component
Description = collectiveInternationalISDNNumber

OID = 2 5 4 26
Comment = X.520 DN component
Description = registeredAddress

OID = 2 5 4 27
Comment = X.520 DN component
Description = destinationIndicator

OID = 2 5 4 28
Comment = X.520 DN component
Description = preferredDeliveryMehtod

OID = 2 5 4 29
Comment = X.520 DN component
Description = presentationAddress

OID = 2 5 4 30
Comment = X.520 DN component
Description = supportedApplicationContext

OID = 2 5 4 31
Comment = X.520 DN component
Description = member

OID = 2 5 4 32
Comment = X.520 DN component
Description = owner

OID = 2 5 4 33
Comment = X.520 DN component
Description = roleOccupant

OID = 2 5 4 34
Comment = X.520 DN component
Description = seeAlso

OID = 2 5 4 35
Comment = X.520 DN component
Description = userPassword

OID = 2 5 4 36
Comment = X.520 DN component
Description = userCertificate

OID = 2 5 4 37
Comment = X.520 DN component
Description = caCertificate

OID = 2 5 4 38
Comment = X.520 DN component
Description = authorityRevocationList

OID = 2 5 4 39
Comment = X.520 DN component
Description = certificateRevocationList

OID = 2 5 4 40
Comment = X.520 DN component
Description = crossCertificatePair

OID = 2 5 4 41
Comment = X.520 DN component
Description = name

OID = 2 5 4 42
Comment = X.520 DN component
Description = givenName

OID = 2 5 4 43
Comment = X.520 DN component
Description = initials

OID = 2 5 4 44
Comment = X.520 DN component
Description = generationQualifier

OID = 2 5 4 45
Comment = X.520 DN component
Description = uniqueIdentifier

OID = 2 5 4 46
Comment = X.520 DN component
Description = dnQualifier

OID = 2 5 4 47
Comment = X.520 DN component
Description = enhancedSearchGuide

OID = 2 5 4 48
Comment = X.520 DN component
Description = protocolInformation

OID = 2 5 4 49
Comment = X.520 DN component
Description = distinguishedName

OID = 2 5 4 50
Comment = X.520 DN component
Description = uniqueMember

OID = 2 5 4 51
Comment = X.520 DN component
Description = houseIdentifier

OID = 2 5 4 52
Comment = X.520 DN component
Description = supportedAlgorithms

OID = 2 5 4 53
Comment = X.520 DN component
Description = deltaRevocationList

OID = 2 5 4 54
Comment = X.520 DN component
Description = dmdName

OID = 2 5 4 55
Comment = X.520 DN component
Description = clearance

OID = 2 5 4 56
Comment = X.520 DN component
Description = defaultDirQop

OID = 2 5 4 57
Comment = X.520 DN component
Description = attributeIntegrityInfo

OID = 2 5 4 58
Comment = X.520 DN component
Description = attributeCertificate

OID = 2 5 4 59
Comment = X.520 DN component
Description = attributeCertificateRevocationList

OID = 2 5 4 60
Comment = X.520 DN component
Description = confKeyInfo

OID = 2 5 4 61
Comment = X.520 DN component
Description = aACertificate

OID = 2 5 4 62
Comment = X.520 DN component
Description = attributeDescriptorCertificate

OID = 2 5 4 63
Comment = X.520 DN component
Description = attributeAuthorityRevocationList

OID = 2 5 4 64
Comment = X.520 DN component
Description = familyInformation

OID = 2 5 4 65
Comment = X.520 DN component
Description = pseudonym

OID = 2 5 4 66
Comment = X.520 DN component
Description = communicationsService

OID = 2 5 4 67
Comment = X.520 DN component
Description = communicationsNetwork

OID = 2 5 4 68
Comment = X.520 DN component
Description = certificationPracticeStmt

OID = 2 5 4 69
Comment = X.520 DN component
Description = certificatePolicy

OID = 2 5 4 70
Comment = X.520 DN component
Description = pkiPath

OID = 2 5 4 71
Comment = X.520 DN component
Description = privPolicy

OID = 2 5 4 72
Comment = X.520 DN component
Description = role

OID = 2 5 4 73
Comment = X.520 DN component
Description = delegationPath

OID = 2 5 4 74
Comment = X.520 DN component
Description = protPrivPolicy

OID = 2 5 4 75
Comment = X.520 DN component
Description = xMLPrivilegeInfo

OID = 2 5 4 76
Comment = X.520 DN component
Description = xmlPrivPolicy

OID = 2 5 4 82
Comment = X.520 DN component
Description = permission

# X.500 object classes

OID = 2 5 6 0
Comment = X.520 objectClass
Description = top

OID = 2 5 6 1
Comment = X.520 objectClass
Description = alias

OID = 2 5 6 2
Comment = X.520 objectClass
Description = country

OID = 2 5 6 3
Comment = X.520 objectClass
Description = locality

OID = 2 5 6 4
Comment = X.520 objectClass
Description = organization

OID = 2 5 6 5
Comment = X.520 objectClass
Description = organizationalUnit

OID = 2 5 6 6
Comment = X.520 objectClass
Description = person

OID = 2 5 6 7
Comment = X.520 objectClass
Description = organizationalPerson

OID = 2 5 6 8
Comment = X.520 objectClass
Description = organizationalRole

OID = 2 5 6 9
Comment = X.520 objectClass
Description = groupOfNames

OID = 2 5 6 10
Comment = X.520 objectClass
Description = residentialPerson

OID = 2 5 6 11
Comment = X.520 objectClass
Description = applicationProcess

OID = 2 5 6 12
Comment = X.520 objectClass
Description = applicationEntity

OID = 2 5 6 13
Comment = X.520 objectClass
Description = dSA

OID = 2 5 6 14
Comment = X.520 objectClass
Description = device

OID = 2 5 6 15
Comment = X.520 objectClass
Description = strongAuthenticationUser

OID = 2 5 6 16
Comment = X.520 objectClass
Description = certificateAuthority

OID = 2 5 6 17
Comment = X.520 objectClass
Description = groupOfUniqueNames

OID = 2 5 6 21
Comment = X.520 objectClass
Description = pkiUser

OID = 2 5 6 22
Comment = X.520 objectClass
Description = pkiCA

# X.500 algorithms

OID = 2 5 8 1 1
Comment = X.500 algorithms.  Ambiguous, since no padding rules specified
Description = rsa
Warning

# X.509.  Some of the smaller values are from early X.509 drafts with
# cross-pollination from X9.55 and are now deprecated.  Alternative OIDs are
# marked if these are known.  In some cases there are multiple generations of
# superseded OIDs

OID = 2 5 29 1
Comment = X.509 extension.  Deprecated, use 2 5 29 35 instead
Description = authorityKeyIdentifier
Warning

OID = 2 5 29 2
Comment = X.509 extension.  Obsolete, use keyUsage/extKeyUsage instead
Description = keyAttributes
Warning

OID = 2 5 29 3
Comment = X.509 extension.  Deprecated, use 2 5 29 32 instead
Description = certificatePolicies
Warning

OID = 2 5 29 4
Comment = X.509 extension.  Obsolete, use keyUsage/extKeyUsage instead
Description = keyUsageRestriction
Warning

OID = 2 5 29 5
Comment = X.509 extension.  Deprecated, use 2 5 29 33 instead
Description = policyMapping
Warning

OID = 2 5 29 6
Comment = X.509 extension.  Obsolete, use nameConstraints instead
Description = subtreesConstraint
Warning

OID = 2 5 29 7
Comment = X.509 extension.  Deprecated, use 2 5 29 17 instead
Description = subjectAltName
Warning

OID = 2 5 29 8
Comment = X.509 extension.  Deprecated, use 2 5 29 18 instead
Description = issuerAltName
Warning

OID = 2 5 29 9
Comment = X.509 extension
Description = subjectDirectoryAttributes

OID = 2 5 29 10
Comment = X.509 extension.  Deprecated, use 2 5 29 19 instead
Description = basicConstraints
Warning

OID = 2 5 29 11
Comment = X.509 extension.  Deprecated, use 2 5 29 30 instead
Description = nameConstraints
Warning

OID = 2 5 29 12
Comment = X.509 extension.  Deprecated, use 2 5 29 36 instead
Description = policyConstraints
Warning

OID = 2 5 29 13
Comment = X.509 extension.  Deprecated, use 2 5 29 19 instead
Description = basicConstraints
Warning

OID = 2 5 29 14
Comment = X.509 extension
Description = subjectKeyIdentifier

OID = 2 5 29 15
Comment = X.509 extension
Description = keyUsage

OID = 2 5 29 16
Comment = X.509 extension
Description = privateKeyUsagePeriod

OID = 2 5 29 17
Comment = X.509 extension
Description = subjectAltName

OID = 2 5 29 18
Comment = X.509 extension
Description = issuerAltName

OID = 2 5 29 19
Comment = X.509 extension
Description = basicConstraints

OID = 2 5 29 20
Comment = X.509 extension
Description = cRLNumber

OID = 2 5 29 21
Comment = X.509 extension
Description = cRLReason

OID = 2 5 29 22
Comment = X.509 extension.  Deprecated, alternative OID uncertain
Description = expirationDate
Warning

OID = 2 5 29 23
Comment = X.509 extension
Description = instructionCode

OID = 2 5 29 24
Comment = X.509 extension
Description = invalidityDate

OID = 2 5 29 25
Comment = X.509 extension.  Deprecated, use 2 5 29 31 instead
Description = cRLDistributionPoints
Warning

OID = 2 5 29 26
Comment = X.509 extension.  Deprecated, use 2 5 29 28 instead
Description = issuingDistributionPoint
Warning

OID = 2 5 29 27
Comment = X.509 extension
Description = deltaCRLIndicator

OID = 2 5 29 28
Comment = X.509 extension
Description = issuingDistributionPoint

OID = 2 5 29 29
Comment = X.509 extension
Description = certificateIssuer

OID = 2 5 29 30
Comment = X.509 extension
Description = nameConstraints

OID = 2 5 29 31
Comment = X.509 extension
Description = cRLDistributionPoints

OID = 2 5 29 32
Comment = X.509 extension
Description = certificatePolicies

OID = 2 5 29 32 0
Comment = X.509 certificate policy
Description = anyPolicy

OID = 2 5 29 33
Comment = X.509 extension
Description = policyMappings

OID = 2 5 29 34
Comment = X.509 extension.  Deprecated, use 2 5 29 36 instead
Description = policyConstraints
Warning

OID = 2 5 29 35
Comment = X.509 extension
Description = authorityKeyIdentifier

OID = 2 5 29 36
Comment = X.509 extension
Description = policyConstraints

OID = 2 5 29 37
Comment = X.509 extension
Description = extKeyUsage

OID = 2 5 29 37 0
Comment = X.509 extended key usage
Description = anyExtendedKeyUsage

OID = 2 5 29 38
Comment = X.509 extension
Description = authorityAttributeIdentifier

OID = 2 5 29 39
Comment = X.509 extension
Description = roleSpecCertIdentifier

OID = 2 5 29 40
Comment = X.509 extension
Description = cRLStreamIdentifier

OID = 2 5 29 41
Comment = X.509 extension
Description = basicAttConstraints

OID = 2 5 29 42
Comment = X.509 extension
Description = delegatedNameConstraints

OID = 2 5 29 43
Comment = X.509 extension
Description = timeSpecification

OID = 2 5 29 44
Comment = X.509 extension
Description = cRLScope

OID = 2 5 29 45
Comment = X.509 extension
Description = statusReferrals

OID = 2 5 29 46
Comment = X.509 extension
Description = freshestCRL

OID = 2 5 29 47
Comment = X.509 extension
Description = orderedList

OID = 2 5 29 48
Comment = X.509 extension
Description = attributeDescriptor

OID = 2 5 29 49
Comment = X.509 extension
Description = userNotice

OID = 2 5 29 50
Comment = X.509 extension
Description = sOAIdentifier

OID = 2 5 29 51
Comment = X.509 extension
Description = baseUpdateTime

OID = 2 5 29 52
Comment = X.509 extension
Description = acceptableCertPolicies

OID = 2 5 29 53
Comment = X.509 extension
Description = deltaInfo

OID = 2 5 29 54
Comment = X.509 extension
Description = inhibitAnyPolicy

OID = 2 5 29 55
Comment = X.509 extension
Description = targetInformation

OID = 2 5 29 56
Comment = X.509 extension
Description = noRevAvail

OID = 2 5 29 57
Comment = X.509 extension
Description = acceptablePrivilegePolicies

OID = 2 5 29 58
Comment = X.509 extension
Description = toBeRevoked

OID = 2 5 29 59
Comment = X.509 extension
Description = revokedGroups

OID = 2 5 29 60
Comment = X.509 extension
Description = expiredCertsOnCRL

OID = 2 5 29 61
Comment = X.509 extension
Description = indirectIssuer

OID = 2 5 29 62
Comment = X.509 extension
Description = noAssertion

OID = 2 5 29 63
Comment = X.509 extension
Description = aAissuingDistributionPoint

OID = 2 5 29 64
Comment = X.509 extension
Description = issuedOnBehalfOf

OID = 2 5 29 65
Comment = X.509 extension
Description = singleUse

OID = 2 5 29 66
Comment = X.509 extension
Description = groupAC

OID = 2 5 29 67
Comment = X.509 extension
Description = allowedAttAss

OID = 2 5 29 68
Comment = X.509 extension
Description = attributeMappings

OID = 2 5 29 69
Comment = X.509 extension
Description = holderNameConstraints

# DMS

OID = 2 16 840 1 101 2 1 1 1
Comment = SDN.700 INFOSEC algorithms
Description = sdnsSignatureAlgorithm

OID = 2 16 840 1 101 2 1 1 2
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicSignatureAlgorithm, this OID is better known as dsaWithSHA-1.
Description = fortezzaSignatureAlgorithm

OID = 2 16 840 1 101 2 1 1 3
Comment = SDN.700 INFOSEC algorithms
Description = sdnsConfidentialityAlgorithm

OID = 2 16 840 1 101 2 1 1 4
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicConfidentialityAlgorithm
Description = fortezzaConfidentialityAlgorithm

OID = 2 16 840 1 101 2 1 1 5
Comment = SDN.700 INFOSEC algorithms
Description = sdnsIntegrityAlgorithm

OID = 2 16 840 1 101 2 1 1 6
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicIntegrityAlgorithm
Description = fortezzaIntegrityAlgorithm

OID = 2 16 840 1 101 2 1 1 7
Comment = SDN.700 INFOSEC algorithms
Description = sdnsTokenProtectionAlgorithm

OID = 2 16 840 1 101 2 1 1 8
Comment = SDN.700 INFOSEC algorithms.  Formerly know as mosaicTokenProtectionAlgorithm
Description = fortezzaTokenProtectionAlgorithm

OID = 2 16 840 1 101 2 1 1 9
Comment = SDN.700 INFOSEC algorithms
Description = sdnsKeyManagementAlgorithm

OID = 2 16 840 1 101 2 1 1 10
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicKeyManagementAlgorithm
Description = fortezzaKeyManagementAlgorithm

OID = 2 16 840 1 101 2 1 1 11
Comment = SDN.700 INFOSEC algorithms
Description = sdnsKMandSigAlgorithm

OID = 2 16 840 1 101 2 1 1 12
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicKMandSigAlgorithm
Description = fortezzaKMandSigAlgorithm

OID = 2 16 840 1 101 2 1 1 13
Comment = SDN.700 INFOSEC algorithms
Description = suiteASignatureAlgorithm

OID = 2 16 840 1 101 2 1 1 14
Comment = SDN.700 INFOSEC algorithms
Description = suiteAConfidentialityAlgorithm

OID = 2 16 840 1 101 2 1 1 15
Comment = SDN.700 INFOSEC algorithms
Description = suiteAIntegrityAlgorithm

OID = 2 16 840 1 101 2 1 1 16
Comment = SDN.700 INFOSEC algorithms
Description = suiteATokenProtectionAlgorithm

OID = 2 16 840 1 101 2 1 1 17
Comment = SDN.700 INFOSEC algorithms
Description = suiteAKeyManagementAlgorithm

OID = 2 16 840 1 101 2 1 1 18
Comment = SDN.700 INFOSEC algorithms
Description = suiteAKMandSigAlgorithm

OID = 2 16 840 1 101 2 1 1 19
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicUpdatedSigAlgorithm
Description = fortezzaUpdatedSigAlgorithm

OID = 2 16 840 1 101 2 1 1 20
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicKMandUpdSigAlgorithms
Description = fortezzaKMandUpdSigAlgorithms

OID = 2 16 840 1 101 2 1 1 21
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicUpdatedIntegAlgorithm
Description = fortezzaUpdatedIntegAlgorithm

OID = 2 16 840 1 101 2 1 1 22
Comment = SDN.700 INFOSEC algorithms.  Formerly known as mosaicKeyEncryptionAlgorithm
Description = keyExchangeAlgorithm

OID = 2 16 840 1 101 2 1 1 23
Comment = SDN.700 INFOSEC algorithms
Description = fortezzaWrap80Algorithm

OID = 2 16 840 1 101 2 1 1 24
Comment = SDN.700 INFOSEC algorithms
Description = kEAKeyEncryptionAlgorithm

OID = 2 16 840 1 101 2 1 2 1
Comment = SDN.700 INFOSEC format
Description = rfc822MessageFormat

OID = 2 16 840 1 101 2 1 2 2
Comment = SDN.700 INFOSEC format
Description = emptyContent

OID = 2 16 840 1 101 2 1 2 3
Comment = SDN.700 INFOSEC format
Description = cspContentType

OID = 2 16 840 1 101 2 1 2 42
Comment = SDN.700 INFOSEC format
Description = mspRev3ContentType

OID = 2 16 840 1 101 2 1 2 48
Comment = SDN.700 INFOSEC format
Description = mspContentType

OID = 2 16 840 1 101 2 1 2 49
Comment = SDN.700 INFOSEC format
Description = mspRekeyAgentProtocol

OID = 2 16 840 1 101 2 1 2 50
Comment = SDN.700 INFOSEC format
Description = mspMMP

OID = 2 16 840 1 101 2 1 2 66
Comment = SDN.700 INFOSEC format
Description = mspRev3-1ContentType

OID = 2 16 840 1 101 2 1 2 72
Comment = SDN.700 INFOSEC format
Description = forwardedMSPMessageBodyPart

OID = 2 16 840 1 101 2 1 2 73
Comment = SDN.700 INFOSEC format
Description = mspForwardedMessageParameters

OID = 2 16 840 1 101 2 1 2 74
Comment = SDN.700 INFOSEC format
Description = forwardedCSPMsgBodyPart

OID = 2 16 840 1 101 2 1 2 75
Comment = SDN.700 INFOSEC format
Description = cspForwardedMessageParameters

OID = 2 16 840 1 101 2 1 2 76
Comment = SDN.700 INFOSEC format
Description = mspMMP2

OID = 2 16 840 1 101 2 1 3 1
Comment = SDN.700 INFOSEC policy
Description = sdnsSecurityPolicy

OID = 2 16 840 1 101 2 1 3 2
Comment = SDN.700 INFOSEC policy
Description = sdnsPRBAC

OID = 2 16 840 1 101 2 1 3 3
Comment = SDN.700 INFOSEC policy
Description = mosaicPRBAC

OID = 2 16 840 1 101 2 1 3 10
Comment = SDN.700 INFOSEC policy
Description = siSecurityPolicy

OID = 2 16 840 1 101 2 1 3 10 0
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siNASP
Warning

OID = 2 16 840 1 101 2 1 3 10 1
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siELCO
Warning

OID = 2 16 840 1 101 2 1 3 10 2
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siTK
Warning

OID = 2 16 840 1 101 2 1 3 10 3
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siDSAP
Warning

OID = 2 16 840 1 101 2 1 3 10 4
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siSSSS
Warning

OID = 2 16 840 1 101 2 1 3 10 5
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siDNASP
Warning

OID = 2 16 840 1 101 2 1 3 10 6
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siBYEMAN
Warning

OID = 2 16 840 1 101 2 1 3 10 7
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siREL-US
Warning

OID = 2 16 840 1 101 2 1 3 10 8
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siREL-AUS
Warning

OID = 2 16 840 1 101 2 1 3 10 9
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siREL-CAN
Warning

OID = 2 16 840 1 101 2 1 3 10 10
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siREL_UK
Warning

OID = 2 16 840 1 101 2 1 3 10 11
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siREL-NZ
Warning

OID = 2 16 840 1 101 2 1 3 10 12
Comment = SDN.700 INFOSEC policy (obsolete)
Description = siGeneric
Warning

OID = 2 16 840 1 101 2 1 3 11
Comment = SDN.700 INFOSEC policy
Description = genser

OID = 2 16 840 1 101 2 1 3 11 0
Comment = SDN.700 INFOSEC policy (obsolete)
Description = genserNations
Warning

OID = 2 16 840 1 101 2 1 3 11 1
Comment = SDN.700 INFOSEC policy (obsolete)
Description = genserComsec
Warning

OID = 2 16 840 1 101 2 1 3 11 2
Comment = SDN.700 INFOSEC policy (obsolete)
Description = genserAcquisition
Warning

OID = 2 16 840 1 101 2 1 3 11 3
Comment = SDN.700 INFOSEC policy
Description = genserSecurityCategories

OID = 2 16 840 1 101 2 1 3 11 3 0
Comment = SDN.700 INFOSEC GENSER policy
Description = genserTagSetName

OID = 2 16 840 1 101 2 1 3 12
Comment = SDN.700 INFOSEC policy
Description = defaultSecurityPolicy

OID = 2 16 840 1 101 2 1 3 13
Comment = SDN.700 INFOSEC policy
Description = capcoMarkings

OID = 2 16 840 1 101 2 1 3 13 0
Comment = SDN.700 INFOSEC policy CAPCO markings
Description = capcoSecurityCategories

OID = 2 16 840 1 101 2 1 3 13 0 1
Comment = SDN.700 INFOSEC policy CAPCO markings
Description = capcoTagSetName1

OID = 2 16 840 1 101 2 1 3 13 0 2
Comment = SDN.700 INFOSEC policy CAPCO markings
Description = capcoTagSetName2

OID = 2 16 840 1 101 2 1 3 13 0 3
Comment = SDN.700 INFOSEC policy CAPCO markings
Description = capcoTagSetName3

OID = 2 16 840 1 101 2 1 3 13 0 4
Comment = SDN.700 INFOSEC policy CAPCO markings
Description = capcoTagSetName4

OID = 2 16 840 1 101 2 1 5 1
Comment = SDN.700 INFOSEC attributes (superseded)
Description = sdnsKeyManagementCertificate
Warning

OID = 2 16 840 1 101 2 1 5 2
Comment = SDN.700 INFOSEC attributes (superseded)
Description = sdnsUserSignatureCertificate
Warning

OID = 2 16 840 1 101 2 1 5 3
Comment = SDN.700 INFOSEC attributes (superseded)
Description = sdnsKMandSigCertificate
Warning

OID = 2 16 840 1 101 2 1 5 4
Comment = SDN.700 INFOSEC attributes (superseded)
Description = fortezzaKeyManagementCertificate
Warning

OID = 2 16 840 1 101 2 1 5 5
Comment = SDN.700 INFOSEC attributes (superseded)
Description = fortezzaKMandSigCertificate
Warning

OID = 2 16 840 1 101 2 1 5 6
Comment = SDN.700 INFOSEC attributes (superseded)
Description = fortezzaUserSignatureCertificate
Warning

OID = 2 16 840 1 101 2 1 5 7
Comment = SDN.700 INFOSEC attributes (superseded)
Description = fortezzaCASignatureCertificate
Warning

OID = 2 16 840 1 101 2 1 5 8
Comment = SDN.700 INFOSEC attributes (superseded)
Description = sdnsCASignatureCertificate
Warning

OID = 2 16 840 1 101 2 1 5 10
Comment = SDN.700 INFOSEC attributes (superseded)
Description = auxiliaryVector
Warning

OID = 2 16 840 1 101 2 1 5 11
Comment = SDN.700 INFOSEC attributes
Description = mlReceiptPolicy

OID = 2 16 840 1 101 2 1 5 12
Comment = SDN.700 INFOSEC attributes
Description = mlMembership

OID = 2 16 840 1 101 2 1 5 13
Comment = SDN.700 INFOSEC attributes
Description = mlAdministrators

OID = 2 16 840 1 101 2 1 5 14
Comment = SDN.700 INFOSEC attributes
Description = alid

OID = 2 16 840 1 101 2 1 5 20
Comment = SDN.700 INFOSEC attributes
Description = janUKMs

OID = 2 16 840 1 101 2 1 5 21
Comment = SDN.700 INFOSEC attributes
Description = febUKMs

OID = 2 16 840 1 101 2 1 5 22
Comment = SDN.700 INFOSEC attributes
Description = marUKMs

OID = 2 16 840 1 101 2 1 5 23
Comment = SDN.700 INFOSEC attributes
Description = aprUKMs

OID = 2 16 840 1 101 2 1 5 24
Comment = SDN.700 INFOSEC attributes
Description = mayUKMs

OID = 2 16 840 1 101 2 1 5 25
Comment = SDN.700 INFOSEC attributes
Description = junUKMs

OID = 2 16 840 1 101 2 1 5 26
Comment = SDN.700 INFOSEC attributes
Description = julUKMs

OID = 2 16 840 1 101 2 1 5 27
Comment = SDN.700 INFOSEC attributes
Description = augUKMs

OID = 2 16 840 1 101 2 1 5 28
Comment = SDN.700 INFOSEC attributes
Description = sepUKMs

OID = 2 16 840 1 101 2 1 5 29
Comment = SDN.700 INFOSEC attributes
Description = octUKMs

OID = 2 16 840 1 101 2 1 5 30
Comment = SDN.700 INFOSEC attributes
Description = novUKMs

OID = 2 16 840 1 101 2 1 5 31
Comment = SDN.700 INFOSEC attributes
Description = decUKMs

OID = 2 16 840 1 101 2 1 5 40
Comment = SDN.700 INFOSEC attributes
Description = metaSDNSckl

OID = 2 16 840 1 101 2 1 5 41
Comment = SDN.700 INFOSEC attributes
Description = sdnsCKL

OID = 2 16 840 1 101 2 1 5 42
Comment = SDN.700 INFOSEC attributes
Description = metaSDNSsignatureCKL

OID = 2 16 840 1 101 2 1 5 43
Comment = SDN.700 INFOSEC attributes
Description = sdnsSignatureCKL

OID = 2 16 840 1 101 2 1 5 44
Comment = SDN.700 INFOSEC attributes
Description = sdnsCertificateRevocationList

OID = 2 16 840 1 101 2 1 5 45
Comment = SDN.700 INFOSEC attributes (superseded)
Description = fortezzaCertificateRevocationList
Warning

OID = 2 16 840 1 101 2 1 5 46
Comment = SDN.700 INFOSEC attributes
Description = fortezzaCKL

OID = 2 16 840 1 101 2 1 5 47
Comment = SDN.700 INFOSEC attributes
Description = alExemptedAddressProcessor

OID = 2 16 840 1 101 2 1 5 48
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = guard
Warning

OID = 2 16 840 1 101 2 1 5 49
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = algorithmsSupported
Warning

OID = 2 16 840 1 101 2 1 5 50
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = suiteAKeyManagementCertificate
Warning

OID = 2 16 840 1 101 2 1 5 51
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = suiteAKMandSigCertificate
Warning

OID = 2 16 840 1 101 2 1 5 52
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = suiteAUserSignatureCertificate
Warning

OID = 2 16 840 1 101 2 1 5 53
Comment = SDN.700 INFOSEC attributes
Description = prbacInfo

OID = 2 16 840 1 101 2 1 5 54
Comment = SDN.700 INFOSEC attributes
Description = prbacCAConstraints

OID = 2 16 840 1 101 2 1 5 55
Comment = SDN.700 INFOSEC attributes
Description = sigOrKMPrivileges

OID = 2 16 840 1 101 2 1 5 56
Comment = SDN.700 INFOSEC attributes
Description = commPrivileges

OID = 2 16 840 1 101 2 1 5 57
Comment = SDN.700 INFOSEC attributes
Description = labeledAttribute

OID = 2 16 840 1 101 2 1 5 58
Comment = SDN.700 INFOSEC attributes (obsolete)
Description = policyInformationFile
Warning

OID = 2 16 840 1 101 2 1 5 59
Comment = SDN.700 INFOSEC attributes
Description = secPolicyInformationFile

OID = 2 16 840 1 101 2 1 5 60
Comment = SDN.700 INFOSEC attributes
Description = cAClearanceConstraint

OID = 2 16 840 1 101 2 1 7 1
Comment = SDN.700 INFOSEC extensions
Description = cspExtns

OID = 2 16 840 1 101 2 1 7 1 0
Comment = SDN.700 INFOSEC extensions
Description = cspCsExtn

OID = 2 16 840 1 101 2 1 8 1
Comment = SDN.700 INFOSEC security category
Description = mISSISecurityCategories

OID = 2 16 840 1 101 2 1 8 2
Comment = SDN.700 INFOSEC security category
Description = standardSecurityLabelPrivileges

OID = 2 16 840 1 101 2 1 10 1
Comment = SDN.700 INFOSEC privileges
Description = sigPrivileges

OID = 2 16 840 1 101 2 1 10 2
Comment = SDN.700 INFOSEC privileges
Description = kmPrivileges

OID = 2 16 840 1 101 2 1 10 3
Comment = SDN.700 INFOSEC privileges
Description = namedTagSetPrivilege

OID = 2 16 840 1 101 2 1 11 1
Comment = SDN.700 INFOSEC certificate policy
Description = ukDemo

OID = 2 16 840 1 101 2 1 11 2
Comment = SDN.700 INFOSEC certificate policy
Description = usDODClass2

OID = 2 16 840 1 101 2 1 11 3
Comment = SDN.700 INFOSEC certificate policy
Description = usMediumPilot

OID = 2 16 840 1 101 2 1 11 4
Comment = SDN.700 INFOSEC certificate policy
Description = usDODClass4

OID = 2 16 840 1 101 2 1 11 5
Comment = SDN.700 INFOSEC certificate policy
Description = usDODClass3

OID = 2 16 840 1 101 2 1 11 6
Comment = SDN.700 INFOSEC certificate policy
Description = usDODClass5

OID = 2 16 840 1 101 2 1 12 0
Comment = SDN.700 INFOSEC test objects
Description = testSecurityPolicy

OID = 2 16 840 1 101 2 1 12 0 1
Comment = SDN.700 INFOSEC test objects
Description = tsp1

OID = 2 16 840 1 101 2 1 12 0 1 0
Comment = SDN.700 INFOSEC test objects
Description = tsp1SecurityCategories

OID = 2 16 840 1 101 2 1 12 0 1 0 0
Comment = SDN.700 INFOSEC test objects
Description = tsp1TagSetZero

OID = 2 16 840 1 101 2 1 12 0 1 0 1
Comment = SDN.700 INFOSEC test objects
Description = tsp1TagSetOne

OID = 2 16 840 1 101 2 1 12 0 1 0 2
Comment = SDN.700 INFOSEC test objects
Description = tsp1TagSetTwo

OID = 2 16 840 1 101 2 1 12 0 2
Comment = SDN.700 INFOSEC test objects
Description = tsp2

OID = 2 16 840 1 101 2 1 12 0 2 0
Comment = SDN.700 INFOSEC test objects
Description = tsp2SecurityCategories

OID = 2 16 840 1 101 2 1 12 0 2 0 0
Comment = SDN.700 INFOSEC test objects
Description = tsp2TagSetZero

OID = 2 16 840 1 101 2 1 12 0 2 0 1
Comment = SDN.700 INFOSEC test objects
Description = tsp2TagSetOne

OID = 2 16 840 1 101 2 1 12 0 2 0 2
Comment = SDN.700 INFOSEC test objects
Description = tsp2TagSetTwo

# At least someone there has a sense of humour :-)
OID = 2 16 840 1 101 2 1 12 0 3
Comment = SDN.700 INFOSEC test objects
Description = kafka

OID = 2 16 840 1 101 2 1 12 0 3 0
Comment = SDN.700 INFOSEC test objects
Description = kafkaSecurityCategories

OID = 2 16 840 1 101 2 1 12 0 3 0 1
Comment = SDN.700 INFOSEC test objects
Description = kafkaTagSetName1

OID = 2 16 840 1 101 2 1 12 0 3 0 2
Comment = SDN.700 INFOSEC test objects
Description = kafkaTagSetName2

OID = 2 16 840 1 101 2 1 12 0 3 0 3
Comment = SDN.700 INFOSEC test objects
Description = kafkaTagSetName3

OID = 2 16 840 1 101 2 1 12 1 1
Comment = SDN.700 INFOSEC test objects
Description = tcp1

# CSOR GAK-FIPS

OID = 2 16 840 1 101 3 1
Comment = CSOR GAK
Description = slabel
Warning

OID = 2 16 840 1 101 3 2
Comment = CSOR GAK
Description = pki
Warning

OID = 2 16 840 1 101 3 2 1
Comment = CSOR GAK policy
Description = GAK policyIdentifier
Warning

OID = 2 16 840 1 101 3 2 1 3 1
Comment = Federal Bridge CA Policy
Description = fbcaRudimentary policyIdentifier

OID = 2 16 840 1 101 3 2 1 3 2
Comment = Federal Bridge CA Policy
Description = fbcaBasic policyIdentifier

OID = 2 16 840 1 101 3 2 1 3 3
Comment = Federal Bridge CA Policy
Description = fbcaMedium policyIdentifier

OID = 2 16 840 1 101 3 2 1 3 4
Comment = Federal Bridge CA Policy
Description = fbcaHigh policyIdentifier

OID = 2 16 840 1 101 3 2 2
Comment = CSOR GAK extended key usage
Description = gak
Warning

OID = 2 16 840 1 101 3 2 2 1
Comment = CSOR GAK extended key usage
Description = kRAKey
Warning

OID = 2 16 840 1 101 3 2 3
Comment = CSOR GAK extensions
Description = extensions
Warning

OID = 2 16 840 1 101 3 2 3 1
Comment = CSOR GAK extensions
Description = kRTechnique
Warning

OID = 2 16 840 1 101 3 2 3 2
Comment = CSOR GAK extensions
Description = kRecoveryCapable
Warning

OID = 2 16 840 1 101 3 2 3 3
Comment = CSOR GAK extensions
Description = kR
Warning

OID = 2 16 840 1 101 3 2 4
Comment = CSOR GAK
Description = keyRecoverySchemes
Warning

OID = 2 16 840 1 101 3 2 5
Comment = CSOR GAK
Description = krapola
Warning

OID = 2 16 840 1 101 3 3
Comment = CSOR GAK
Description = arpa
Warning

# CSOR (NIST) Algorithms

OID = 2 16 840 1 101 3 4
Comment = NIST Algorithm
Description = nistAlgorithm

OID = 2 16 840 1 101 3 4 1
Comment = NIST Algorithm
Description = aes

OID = 2 16 840 1 101 3 4 1 1
Comment = NIST Algorithm
Description = aes128-ECB

OID = 2 16 840 1 101 3 4 1 2
Comment = NIST Algorithm
Description = aes128-CBC

OID = 2 16 840 1 101 3 4 1 3
Comment = NIST Algorithm
Description = aes128-OFB

OID = 2 16 840 1 101 3 4 1 4
Comment = NIST Algorithm
Description = aes128-CFB

OID = 2 16 840 1 101 3 4 1 5
Comment = NIST Algorithm
Description = aes128-wrap

OID = 2 16 840 1 101 3 4 1 6
Comment = NIST Algorithm
Description = aes128-GCM

OID = 2 16 840 1 101 3 4 1 7
Comment = NIST Algorithm
Description = aes128-CCM

OID = 2 16 840 1 101 3 4 1 8
Comment = NIST Algorithm
Description = aes128-wrap-pad

OID = 2 16 840 1 101 3 4 1 21
Comment = NIST Algorithm
Description = aes192-ECB

OID = 2 16 840 1 101 3 4 1 22
Comment = NIST Algorithm
Description = aes192-CBC

OID = 2 16 840 1 101 3 4 1 23
Comment = NIST Algorithm
Description = aes192-OFB

OID = 2 16 840 1 101 3 4 1 24
Comment = NIST Algorithm
Description = aes192-CFB

OID = 2 16 840 1 101 3 4 1 25
Comment = NIST Algorithm
Description = aes192-wrap

OID = 2 16 840 1 101 3 4 1 26
Comment = NIST Algorithm
Description = aes192-GCM

OID = 2 16 840 1 101 3 4 1 27
Comment = NIST Algorithm
Description = aes192-CCM

OID = 2 16 840 1 101 3 4 1 28
Comment = NIST Algorithm
Description = aes192-wrap-pad

OID = 2 16 840 1 101 3 4 1 41
Comment = NIST Algorithm
Description = aes256-ECB

OID = 2 16 840 1 101 3 4 1 42
Comment = NIST Algorithm
Description = aes256-CBC

OID = 2 16 840 1 101 3 4 1 43
Comment = NIST Algorithm
Description = aes256-OFB

OID = 2 16 840 1 101 3 4 1 44
Comment = NIST Algorithm
Description = aes256-CFB

OID = 2 16 840 1 101 3 4 1 45
Comment = NIST Algorithm
Description = aes256-wrap

OID = 2 16 840 1 101 3 4 1 46
Comment = NIST Algorithm
Description = aes256-GCM

OID = 2 16 840 1 101 3 4 1 47
Comment = NIST Algorithm
Description = aes256-CCM

OID = 2 16 840 1 101 3 4 1 48
Comment = NIST Algorithm
Description = aes256-wrap-pad

OID = 2 16 840 1 101 3 4 2
Comment = NIST Algorithm
Description = hashAlgos

OID = 2 16 840 1 101 3 4 2 1
Comment = NIST Algorithm
Description = sha-256

OID = 2 16 840 1 101 3 4 2 2
Comment = NIST Algorithm
Description = sha-384

OID = 2 16 840 1 101 3 4 2 3
Comment = NIST Algorithm
Description = sha-512

OID = 2 16 840 1 101 3 4 2 4
Comment = NIST Algorithm
Description = sha-224

# The spec for these is incorrect, listing both as ... 1.  Presumably one
# of them is meant to be ...2.
OID = 2 16 840 1 101 3 4 3 1
Comment = NIST Algorithm
Description = dsaWithSha224

OID = 2 16 840 1 101 3 4 3 2
Comment = NIST Algorithm
Description = dsaWithSha256

# Novell

OID = 2 16 840 1 113719 1 2 8
Comment = Novell
Description = novellAlgorithm

OID = 2 16 840 1 113719 1 2 8 22
Comment = Novell encryption algorithm
Description = desCbcIV8

OID = 2 16 840 1 113719 1 2 8 23
Comment = Novell encryption algorithm
Description = desCbcPadIV8

OID = 2 16 840 1 113719 1 2 8 24
Comment = Novell encryption algorithm
Description = desEDE2CbcIV8

OID = 2 16 840 1 113719 1 2 8 25
Comment = Novell encryption algorithm
Description = desEDE2CbcPadIV8

OID = 2 16 840 1 113719 1 2 8 26
Comment = Novell encryption algorithm
Description = desEDE3CbcIV8

OID = 2 16 840 1 113719 1 2 8 27
Comment = Novell encryption algorithm
Description = desEDE3CbcPadIV8

OID = 2 16 840 1 113719 1 2 8 28
Comment = Novell encryption algorithm
Description = rc5CbcPad

OID = 2 16 840 1 113719 1 2 8 29
Comment = Novell signature algorithm
Description = md2WithRSAEncryptionBSafe1

OID = 2 16 840 1 113719 1 2 8 30
Comment = Novell signature algorithm
Description = md5WithRSAEncryptionBSafe1

OID = 2 16 840 1 113719 1 2 8 31
Comment = Novell signature algorithm
Description = sha1WithRSAEncryptionBSafe1

OID = 2 16 840 1 113719 1 2 8 32
Comment = Novell digest algorithm
Description = lmDigest

OID = 2 16 840 1 113719 1 2 8 40
Comment = Novell digest algorithm
Description = md2

OID = 2 16 840 1 113719 1 2 8 50
Comment = Novell digest algorithm
Description = md5

OID = 2 16 840 1 113719 1 2 8 51
Comment = Novell signature algorithm
Description = ikeHmacWithSHA1-RSA

OID = 2 16 840 1 113719 1 2 8 52
Comment = Novell signature algorithm
Description = ikeHmacWithMD5-RSA

OID = 2 16 840 1 113719 1 2 8 69
Comment = Novell encryption algorithm
Description = rc2CbcPad

OID = 2 16 840 1 113719 1 2 8 82
Comment = Novell digest algorithm
Description = sha-1

OID = 2 16 840 1 113719 1 2 8 92
Comment = Novell encryption algorithm
Description = rc2BSafe1Cbc

OID = 2 16 840 1 113719 1 2 8 95
Comment = Novell digest algorithm
Description = md4

OID = 2 16 840 1 113719 1 2 8 130
Comment = Novell keyed hash
Description = md4Packet

OID = 2 16 840 1 113719 1 2 8 131
Comment = Novell encryption algorithm
Description = rsaEncryptionBsafe1

OID = 2 16 840 1 113719 1 2 8 132
Comment = Novell encryption algorithm
Description = nwPassword

OID = 2 16 840 1 113719 1 2 8 133
Comment = Novell encryption algorithm
Description = novellObfuscate-1

OID = 2 16 840 1 113719 1 9
Comment = Novell
Description = pki

OID = 2 16 840 1 113719 1 9 4
Comment = Novell PKI
Description = pkiAttributeType

OID = 2 16 840 1 113719 1 9 4 1
Comment = Novell PKI attribute type
Description = securityAttributes

OID = 2 16 840 1 113719 1 9 4 2
Comment = Novell PKI attribute type
Description = relianceLimit

# Netscape

OID = 2 16 840 1 113730 1
Comment = Netscape
Description = cert-extension

OID = 2 16 840 1 113730 1 1
Comment = Netscape certificate extension
Description = netscape-cert-type

OID = 2 16 840 1 113730 1 2
Comment = Netscape certificate extension
Description = netscape-base-url

OID = 2 16 840 1 113730 1 3
Comment = Netscape certificate extension
Description = netscape-revocation-url

OID = 2 16 840 1 113730 1 4
Comment = Netscape certificate extension
Description = netscape-ca-revocation-url

OID = 2 16 840 1 113730 1 7
Comment = Netscape certificate extension
Description = netscape-cert-renewal-url

OID = 2 16 840 1 113730 1 8
Comment = Netscape certificate extension
Description = netscape-ca-policy-url

OID = 2 16 840 1 113730 1 9
Comment = Netscape certificate extension
Description = HomePage-url

OID = 2 16 840 1 113730 1 10
Comment = Netscape certificate extension
Description = EntityLogo

OID = 2 16 840 1 113730 1 11
Comment = Netscape certificate extension
Description = UserPicture

OID = 2 16 840 1 113730 1 12
Comment = Netscape certificate extension
Description = netscape-ssl-server-name

OID = 2 16 840 1 113730 1 13
Comment = Netscape certificate extension
Description = netscape-comment

OID = 2 16 840 1 113730 2
Comment = Netscape
Description = data-type

OID = 2 16 840 1 113730 2 1
Comment = Netscape data type
Description = dataGIF

OID = 2 16 840 1 113730 2 2
Comment = Netscape data type
Description = dataJPEG

OID = 2 16 840 1 113730 2 3
Comment = Netscape data type
Description = dataURL

OID = 2 16 840 1 113730 2 4
Comment = Netscape data type
Description = dataHTML

OID = 2 16 840 1 113730 2 5
Comment = Netscape data type
Description = certSequence

OID = 2 16 840 1 113730 2 6
Comment = Netscape certificate extension
Description = certURL

OID = 2 16 840 1 113730 3
Comment = Netscape
Description = directory

OID = 2 16 840 1 113730 3 1
Comment = Netscape directory
Description = ldapDefinitions

OID = 2 16 840 1 113730 3 1 1
Comment = Netscape LDAP definitions
Description = carLicense

OID = 2 16 840 1 113730 3 1 2
Comment = Netscape LDAP definitions
Description = departmentNumber

OID = 2 16 840 1 113730 3 1 3
Comment = Netscape LDAP definitions
Description = employeeNumber

OID = 2 16 840 1 113730 3 1 4
Comment = Netscape LDAP definitions
Description = employeeType

OID = 2 16 840 1 113730 3 2 2
Comment = Netscape LDAP definitions
Description = inetOrgPerson

OID = 2 16 840 1 113730 4 1
Comment = Netscape
Description = serverGatedCrypto

# Verisign

# Country, zip, date of birth (age), and gender of cert owner (CZAG) in
# obfuscated form
OID = 2 16 840 1 113733 1 6 3
Comment = Verisign extension
Description = verisignCZAG

# Text string used in certs issued to Netscape InBox customers
OID = 2 16 840 1 113733 1 6 6
Comment = Verisign extension
Description = verisignInBox

OID = 2 16 840 1 113733 1 6 11
Comment = Verisign extension
Description = verisignOnsiteJurisdictionHash

OID = 2 16 840 1 113733 1 6 13
Comment = Verisign extension
Description = Unknown Verisign VPN extension

# Contains DUN, among other things
OID = 2 16 840 1 113733 1 6 15
Comment = Verisign extension
Description = verisignServerID

OID = 2 16 840 1 113733 1 7 1 1
Comment = Verisign policy
Description = verisignCertPolicies95Qualifier1

OID = 2 16 840 1 113733 1 7 1 1 1
Comment = Verisign policy (obsolete)
Description = verisignCPSv1notice

# DN contains non-verified subscriber information
OID = 2 16 840 1 113733 1 7 1 1 2
Comment = Verisign policy (obsolete)
Description = verisignCPSv1nsi

OID = 2 16 840 1 113733 1 7 23 6
Comment = Verisign extension
Description = verisignEVPolicy

OID = 2 16 840 1 113733 1 8 1
Comment = Verisign
Description = verisignISSStrongCrypto

# SCEP

OID = 2 16 840 1 113733 1
Comment = Verisign extension
Description = pki

OID = 2 16 840 1 113733 1 9
Comment = Verisign PKI extension
Description = pkcs7Attribute

OID = 2 16 840 1 113733 1 9 2
Comment = Verisign PKCS #7 attribute
Description = messageType

OID = 2 16 840 1 113733 1 9 3
Comment = Verisign PKCS #7 attribute
Description = pkiStatus

OID = 2 16 840 1 113733 1 9 4
Comment = Verisign PKCS #7 attribute
Description = failInfo

OID = 2 16 840 1 113733 1 9 5
Comment = Verisign PKCS #7 attribute
Description = senderNonce

OID = 2 16 840 1 113733 1 9 6
Comment = Verisign PKCS #7 attribute
Description = recipientNonce

OID = 2 16 840 1 113733 1 9 7
Comment = Verisign PKCS #7 attribute
Description = transID

# Supposedly the attribute for X.509v3 extensions in PKCS #10 requests,
# but everyone seems to use the RSA OID instead
OID = 2 16 840 1 113733 1 9 8
Comment = Verisign PKCS #7 attribute.  Use PKCS #9 extensionRequest instead
Description = extensionReq
Warning

# SET

OID = 2 23 42 0
Comment = SET
Description = contentType

OID = 2 23 42 0 0
Comment = SET contentType
Description = panData

OID = 2 23 42 0 1
Comment = SET contentType
Description = panToken

OID = 2 23 42 0 2
Comment = SET contentType
Description = panOnly

# And on and on and on for another 80-odd OIDs that I'm not going to type in

OID = 2 23 42 1
Comment = SET
Description = msgExt

OID = 2 23 42 2
Comment = SET
Description = field

OID = 2 23 42 2 0
Comment = SET field
Description = fullName

OID = 2 23 42 2 1
Comment = SET field
Description = givenName

OID = 2 23 42 2 2
Comment = SET field
Description = familyName

OID = 2 23 42 2 3
Comment = SET field
Description = birthFamilyName

OID = 2 23 42 2 4
Comment = SET field
Description = placeName

OID = 2 23 42 2 5
Comment = SET field
Description = identificationNumber

OID = 2 23 42 2 6
Comment = SET field
Description = month

OID = 2 23 42 2 7
Comment = SET field
Description = date

OID = 2 23 42 2 8
Comment = SET field
Description = address

OID = 2 23 42 2 9
Comment = SET field
Description = telephone

OID = 2 23 42 2 10
Comment = SET field
Description = amount

OID = 2 23 42 2 11
Comment = SET field
Description = accountNumber

OID = 2 23 42 2 12
Comment = SET field
Description = passPhrase

OID = 2 23 42 3
Comment = SET
Description = attribute

OID = 2 23 42 3 0
Comment = SET attribute
Description = cert

OID = 2 23 42 3 0 0
Comment = SET cert attribute
Description = rootKeyThumb

OID = 2 23 42 3 0 1
Comment = SET cert attribute
Description = additionalPolicy

OID = 2 23 42 4
Comment = SET
Description = algorithm

OID = 2 23 42 5
Comment = SET
Description = policy

OID = 2 23 42 5 0
Comment = SET policy
Description = root

OID = 2 23 42 6
Comment = SET
Description = module

OID = 2 23 42 7
Comment = SET
Description = certExt

OID = 2 23 42 7 0
Comment = SET cert extension
Description = hashedRootKey

OID = 2 23 42 7 1
Comment = SET cert extension
Description = certificateType

OID = 2 23 42 7 2
Comment = SET cert extension
Description = merchantData

OID = 2 23 42 7 3
Comment = SET cert extension
Description = cardCertRequired

OID = 2 23 42 7 4
Comment = SET cert extension
Description = tunneling

OID = 2 23 42 7 5
Comment = SET cert extension
Description = setExtensions

OID = 2 23 42 7 6
Comment = SET cert extension
Description = setQualifier

OID = 2 23 42 8
Comment = SET
Description = brand

OID = 2 23 42 8 1
Comment = SET brand
Description = IATA-ATA

OID = 2 23 42 8 4
Comment = SET brand
Description = VISA

OID = 2 23 42 8 5
Comment = SET brand
Description = MasterCard

OID = 2 23 42 8 30
Comment = SET brand
Description = Diners

OID = 2 23 42 8 34
Comment = SET brand
Description = AmericanExpress

OID = 2 23 42 8 6011
Comment = SET brand
Description = Novus

OID = 2 23 42 9
Comment = SET
Description = vendor

OID = 2 23 42 9 0
Comment = SET vendor
Description = GlobeSet

OID = 2 23 42 9 1
Comment = SET vendor
Description = IBM

OID = 2 23 42 9 2
Comment = SET vendor
Description = CyberCash

OID = 2 23 42 9 3
Comment = SET vendor
Description = Terisa

OID = 2 23 42 9 4
Comment = SET vendor
Description = RSADSI

OID = 2 23 42 9 5
Comment = SET vendor
Description = VeriFone

OID = 2 23 42 9 6
Comment = SET vendor
Description = TrinTech

OID = 2 23 42 9 7
Comment = SET vendor
Description = BankGate

OID = 2 23 42 9 8
Comment = SET vendor
Description = GTE

OID = 2 23 42 9 9
Comment = SET vendor
Description = CompuSource

OID = 2 23 42 9 10
Comment = SET vendor
Description = Griffin

OID = 2 23 42 9 11
Comment = SET vendor
Description = Certicom

OID = 2 23 42 9 12
Comment = SET vendor
Description = OSS

OID = 2 23 42 9 13
Comment = SET vendor
Description = TenthMountain

OID = 2 23 42 9 14
Comment = SET vendor
Description = Antares

OID = 2 23 42 9 15
Comment = SET vendor
Description = ECC

OID = 2 23 42 9 16
Comment = SET vendor
Description = Maithean

OID = 2 23 42 9 17
Comment = SET vendor
Description = Netscape

OID = 2 23 42 9 18
Comment = SET vendor
Description = Verisign

OID = 2 23 42 9 19
Comment = SET vendor
Description = BlueMoney

OID = 2 23 42 9 20
Comment = SET vendor
Description = Lacerte

OID = 2 23 42 9 21
Comment = SET vendor
Description = Fujitsu

OID = 2 23 42 9 22
Comment = SET vendor
Description = eLab

OID = 2 23 42 9 23
Comment = SET vendor
Description = Entrust

OID = 2 23 42 9 24
Comment = SET vendor
Description = VIAnet

OID = 2 23 42 9 25
Comment = SET vendor
Description = III

OID = 2 23 42 9 26
Comment = SET vendor
Description = OpenMarket

OID = 2 23 42 9 27
Comment = SET vendor
Description = Lexem

OID = 2 23 42 9 28
Comment = SET vendor
Description = Intertrader

OID = 2 23 42 9 29
Comment = SET vendor
Description = Persimmon

OID = 2 23 42 9 30
Comment = SET vendor
Description = NABLE

OID = 2 23 42 9 31
Comment = SET vendor
Description = espace-net

OID = 2 23 42 9 32
Comment = SET vendor
Description = Hitachi

OID = 2 23 42 9 33
Comment = SET vendor
Description = Microsoft

OID = 2 23 42 9 34
Comment = SET vendor
Description = NEC

OID = 2 23 42 9 35
Comment = SET vendor
Description = Mitsubishi

OID = 2 23 42 9 36
Comment = SET vendor
Description = NCR

OID = 2 23 42 9 37
Comment = SET vendor
Description = e-COMM

OID = 2 23 42 9 38
Comment = SET vendor
Description = Gemplus

OID = 2 23 42 10
Comment = SET
Description = national

OID = 2 23 42 10 392
Comment = SET national
Description = Japan

# ICAO.  Technically this OID is called "SOD" but displaying that as a name
# will just bugger up people's understanding of the data.  Newer versions of
# the spec call it ldsSecurityObject but that's a bit too vague to indicate
# what it really is.

OID = 2 23 136 1 1 1
Comment = ICAO MRTD
Description = mRTDSignatureData

# Draft SET.  These were invented for testing in pre-1.0 drafts but have
# been used nonetheless by implementors

OID = 2 54 1775 2
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = hashedRootKey
Warning

OID = 2 54 1775 3
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = certificateType
Warning

OID = 2 54 1775 4
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = merchantData
Warning

OID = 2 54 1775 5
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = cardCertRequired
Warning

OID = 2 54 1775 6
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = tunneling
Warning

OID = 2 54 1775 7
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = setQualifier
Warning

OID = 2 54 1775 99
Comment = SET.  Deprecated, use (2 23 42 7 0) instead
Description = setData
Warning

# End of Fahnenstange