| lh | 9ed821d | 2023-04-07 01:36:19 -0700 | [diff] [blame] | 1 | # CCITT was renamed to ITU-T quite some time ago | 
 | 2 | 0			: ITU-T			: itu-t | 
 | 3 | !Alias ccitt itu-t | 
 | 4 |  | 
 | 5 | 1			: ISO			: iso | 
 | 6 |  | 
 | 7 | 2			: JOINT-ISO-ITU-T	: joint-iso-itu-t | 
 | 8 | !Alias joint-iso-ccitt joint-iso-itu-t | 
 | 9 |  | 
 | 10 | iso 2			: member-body		: ISO Member Body | 
 | 11 |  | 
 | 12 | iso 3			: identified-organization | 
 | 13 |  | 
 | 14 | # HMAC OIDs | 
 | 15 | identified-organization 6 1 5 5 8 1 1	: HMAC-MD5	: hmac-md5 | 
 | 16 | identified-organization 6 1 5 5 8 1 2	: HMAC-SHA1	: hmac-sha1 | 
 | 17 |  | 
 | 18 | # "1.3.36.8.3.3" | 
 | 19 | identified-organization 36 8 3 3	: x509ExtAdmission	: Professional Information or basis for Admission | 
 | 20 |  | 
 | 21 | identified-organization 132	: certicom-arc | 
 | 22 |  | 
 | 23 | identified-organization 111     : ieee | 
 | 24 | ieee 2 1619                     : ieee-siswg    : IEEE Security in Storage Working Group | 
 | 25 |  | 
 | 26 | joint-iso-itu-t 23	: international-organizations	: International Organizations | 
 | 27 |  | 
 | 28 | international-organizations 43	: wap | 
 | 29 | wap 1			: wap-wsg | 
 | 30 |  | 
 | 31 | joint-iso-itu-t 5 1 5	: selected-attribute-types	: Selected Attribute Types | 
 | 32 |  | 
 | 33 | selected-attribute-types 55	: clearance | 
 | 34 |  | 
 | 35 | member-body 840		: ISO-US		: ISO US Member Body | 
 | 36 | ISO-US 10040		: X9-57			: X9.57 | 
 | 37 | X9-57 4			: X9cm			: X9.57 CM ? | 
 | 38 |  | 
 | 39 | member-body 156         : ISO-CN        : ISO CN Member Body | 
 | 40 | ISO-CN 10197            : oscca | 
 | 41 | oscca 1                 : sm-scheme | 
 | 42 |  | 
 | 43 | !Cname dsa | 
 | 44 | X9cm 1			: DSA			: dsaEncryption | 
 | 45 | X9cm 3			: DSA-SHA1		: dsaWithSHA1 | 
 | 46 |  | 
 | 47 |  | 
 | 48 | ISO-US 10045		: ansi-X9-62		: ANSI X9.62 | 
 | 49 | !module X9-62 | 
 | 50 | !Alias id-fieldType ansi-X9-62 1 | 
 | 51 | X9-62_id-fieldType 1		: prime-field | 
 | 52 | X9-62_id-fieldType 2		: characteristic-two-field | 
 | 53 | X9-62_characteristic-two-field 3 : id-characteristic-two-basis | 
 | 54 | X9-62_id-characteristic-two-basis 1 : onBasis | 
 | 55 | X9-62_id-characteristic-two-basis 2 : tpBasis | 
 | 56 | X9-62_id-characteristic-two-basis 3 : ppBasis | 
 | 57 | !Alias id-publicKeyType ansi-X9-62 2 | 
 | 58 | X9-62_id-publicKeyType 1	: id-ecPublicKey | 
 | 59 | !Alias ellipticCurve ansi-X9-62 3 | 
 | 60 | !Alias c-TwoCurve X9-62_ellipticCurve 0 | 
 | 61 | X9-62_c-TwoCurve 1		: c2pnb163v1 | 
 | 62 | X9-62_c-TwoCurve 2		: c2pnb163v2 | 
 | 63 | X9-62_c-TwoCurve 3		: c2pnb163v3 | 
 | 64 | X9-62_c-TwoCurve 4		: c2pnb176v1 | 
 | 65 | X9-62_c-TwoCurve 5		: c2tnb191v1 | 
 | 66 | X9-62_c-TwoCurve 6		: c2tnb191v2 | 
 | 67 | X9-62_c-TwoCurve 7		: c2tnb191v3 | 
 | 68 | X9-62_c-TwoCurve 8		: c2onb191v4 | 
 | 69 | X9-62_c-TwoCurve 9		: c2onb191v5 | 
 | 70 | X9-62_c-TwoCurve 10		: c2pnb208w1 | 
 | 71 | X9-62_c-TwoCurve 11		: c2tnb239v1 | 
 | 72 | X9-62_c-TwoCurve 12		: c2tnb239v2 | 
 | 73 | X9-62_c-TwoCurve 13		: c2tnb239v3 | 
 | 74 | X9-62_c-TwoCurve 14		: c2onb239v4 | 
 | 75 | X9-62_c-TwoCurve 15		: c2onb239v5 | 
 | 76 | X9-62_c-TwoCurve 16		: c2pnb272w1 | 
 | 77 | X9-62_c-TwoCurve 17		: c2pnb304w1 | 
 | 78 | X9-62_c-TwoCurve 18		: c2tnb359v1 | 
 | 79 | X9-62_c-TwoCurve 19		: c2pnb368w1 | 
 | 80 | X9-62_c-TwoCurve 20		: c2tnb431r1 | 
 | 81 | !Alias primeCurve X9-62_ellipticCurve 1 | 
 | 82 | X9-62_primeCurve 1	 	: prime192v1 | 
 | 83 | X9-62_primeCurve 2	 	: prime192v2 | 
 | 84 | X9-62_primeCurve 3	 	: prime192v3 | 
 | 85 | X9-62_primeCurve 4	 	: prime239v1 | 
 | 86 | X9-62_primeCurve 5	 	: prime239v2 | 
 | 87 | X9-62_primeCurve 6	 	: prime239v3 | 
 | 88 | X9-62_primeCurve 7	 	: prime256v1 | 
 | 89 | !Alias id-ecSigType ansi-X9-62 4 | 
 | 90 | !global | 
 | 91 | X9-62_id-ecSigType 1		: ecdsa-with-SHA1 | 
 | 92 | X9-62_id-ecSigType 2		: ecdsa-with-Recommended | 
 | 93 | X9-62_id-ecSigType 3		: ecdsa-with-Specified | 
 | 94 | ecdsa-with-Specified 1		: ecdsa-with-SHA224 | 
 | 95 | ecdsa-with-Specified 2		: ecdsa-with-SHA256 | 
 | 96 | ecdsa-with-Specified 3		: ecdsa-with-SHA384 | 
 | 97 | ecdsa-with-Specified 4		: ecdsa-with-SHA512 | 
 | 98 |  | 
 | 99 | # SECG curve OIDs from "SEC 2: Recommended Elliptic Curve Domain Parameters" | 
 | 100 | # (http://www.secg.org/) | 
 | 101 | !Alias secg_ellipticCurve certicom-arc 0 | 
 | 102 | # SECG prime curves OIDs | 
 | 103 | secg-ellipticCurve 6		: secp112r1 | 
 | 104 | secg-ellipticCurve 7		: secp112r2 | 
 | 105 | secg-ellipticCurve 28		: secp128r1 | 
 | 106 | secg-ellipticCurve 29		: secp128r2 | 
 | 107 | secg-ellipticCurve 9		: secp160k1 | 
 | 108 | secg-ellipticCurve 8		: secp160r1 | 
 | 109 | secg-ellipticCurve 30		: secp160r2 | 
 | 110 | secg-ellipticCurve 31		: secp192k1 | 
 | 111 | # NOTE: the curve secp192r1 is the same as prime192v1 defined above | 
 | 112 | #       and is therefore omitted | 
 | 113 | secg-ellipticCurve 32		: secp224k1 | 
 | 114 | secg-ellipticCurve 33		: secp224r1 | 
 | 115 | secg-ellipticCurve 10		: secp256k1 | 
 | 116 | # NOTE: the curve secp256r1 is the same as prime256v1 defined above | 
 | 117 | #       and is therefore omitted | 
 | 118 | secg-ellipticCurve 34		: secp384r1 | 
 | 119 | secg-ellipticCurve 35		: secp521r1 | 
 | 120 | # SECG characteristic two curves OIDs | 
 | 121 | secg-ellipticCurve 4		: sect113r1 | 
 | 122 | secg-ellipticCurve 5		: sect113r2 | 
 | 123 | secg-ellipticCurve 22		: sect131r1 | 
 | 124 | secg-ellipticCurve 23		: sect131r2 | 
 | 125 | secg-ellipticCurve 1		: sect163k1 | 
 | 126 | secg-ellipticCurve 2		: sect163r1 | 
 | 127 | secg-ellipticCurve 15		: sect163r2 | 
 | 128 | secg-ellipticCurve 24		: sect193r1 | 
 | 129 | secg-ellipticCurve 25		: sect193r2 | 
 | 130 | secg-ellipticCurve 26		: sect233k1 | 
 | 131 | secg-ellipticCurve 27		: sect233r1 | 
 | 132 | secg-ellipticCurve 3		: sect239k1 | 
 | 133 | secg-ellipticCurve 16		: sect283k1 | 
 | 134 | secg-ellipticCurve 17		: sect283r1 | 
 | 135 | secg-ellipticCurve 36		: sect409k1 | 
 | 136 | secg-ellipticCurve 37		: sect409r1 | 
 | 137 | secg-ellipticCurve 38		: sect571k1 | 
 | 138 | secg-ellipticCurve 39		: sect571r1 | 
 | 139 |  | 
 | 140 | # WAP/TLS curve OIDs (http://www.wapforum.org/) | 
 | 141 | !Alias wap-wsg-idm-ecid wap-wsg 4 | 
 | 142 | wap-wsg-idm-ecid 1	: wap-wsg-idm-ecid-wtls1 | 
 | 143 | wap-wsg-idm-ecid 3	: wap-wsg-idm-ecid-wtls3 | 
 | 144 | wap-wsg-idm-ecid 4	: wap-wsg-idm-ecid-wtls4 | 
 | 145 | wap-wsg-idm-ecid 5	: wap-wsg-idm-ecid-wtls5 | 
 | 146 | wap-wsg-idm-ecid 6	: wap-wsg-idm-ecid-wtls6 | 
 | 147 | wap-wsg-idm-ecid 7	: wap-wsg-idm-ecid-wtls7 | 
 | 148 | wap-wsg-idm-ecid 8	: wap-wsg-idm-ecid-wtls8 | 
 | 149 | wap-wsg-idm-ecid 9	: wap-wsg-idm-ecid-wtls9 | 
 | 150 | wap-wsg-idm-ecid 10	: wap-wsg-idm-ecid-wtls10 | 
 | 151 | wap-wsg-idm-ecid 11	: wap-wsg-idm-ecid-wtls11 | 
 | 152 | wap-wsg-idm-ecid 12	: wap-wsg-idm-ecid-wtls12 | 
 | 153 |  | 
 | 154 |  | 
 | 155 | ISO-US 113533 7 66 10	: CAST5-CBC		: cast5-cbc | 
 | 156 | 			: CAST5-ECB		: cast5-ecb | 
 | 157 | !Cname cast5-cfb64 | 
 | 158 | 			: CAST5-CFB		: cast5-cfb | 
 | 159 | !Cname cast5-ofb64 | 
 | 160 | 			: CAST5-OFB		: cast5-ofb | 
 | 161 | !Cname pbeWithMD5AndCast5-CBC | 
 | 162 | ISO-US 113533 7 66 12	:			: pbeWithMD5AndCast5CBC | 
 | 163 |  | 
 | 164 | # Macs for CMP and CRMF | 
 | 165 | ISO-US 113533 7 66 13	: id-PasswordBasedMAC	: password based MAC | 
 | 166 | ISO-US 113533 7 66 30	: id-DHBasedMac		: Diffie-Hellman based MAC | 
 | 167 |  | 
 | 168 | ISO-US 113549		: rsadsi		: RSA Data Security, Inc. | 
 | 169 |  | 
 | 170 | rsadsi 1		: pkcs			: RSA Data Security, Inc. PKCS | 
 | 171 |  | 
 | 172 | pkcs 1			: pkcs1 | 
 | 173 | pkcs1 1			:			: rsaEncryption | 
 | 174 | pkcs1 2			: RSA-MD2		: md2WithRSAEncryption | 
 | 175 | pkcs1 3			: RSA-MD4		: md4WithRSAEncryption | 
 | 176 | pkcs1 4			: RSA-MD5		: md5WithRSAEncryption | 
 | 177 | pkcs1 5			: RSA-SHA1		: sha1WithRSAEncryption | 
 | 178 | # According to PKCS #1 version 2.1 | 
 | 179 | pkcs1 7			: RSAES-OAEP		: rsaesOaep | 
 | 180 | pkcs1 8			: MGF1			: mgf1 | 
 | 181 | pkcs1 9			: PSPECIFIED		: pSpecified | 
 | 182 | pkcs1 10		: RSASSA-PSS		: rsassaPss | 
 | 183 |  | 
 | 184 | pkcs1 11		: RSA-SHA256		: sha256WithRSAEncryption | 
 | 185 | pkcs1 12		: RSA-SHA384		: sha384WithRSAEncryption | 
 | 186 | pkcs1 13		: RSA-SHA512		: sha512WithRSAEncryption | 
 | 187 | pkcs1 14		: RSA-SHA224		: sha224WithRSAEncryption | 
 | 188 | pkcs1 15		: RSA-SHA512/224	: sha512-224WithRSAEncryption | 
 | 189 | pkcs1 16		: RSA-SHA512/256	: sha512-256WithRSAEncryption | 
 | 190 |  | 
 | 191 | pkcs 3			: pkcs3 | 
 | 192 | pkcs3 1			:			: dhKeyAgreement | 
 | 193 |  | 
 | 194 | pkcs 5			: pkcs5 | 
 | 195 | pkcs5 1			: PBE-MD2-DES		: pbeWithMD2AndDES-CBC | 
 | 196 | pkcs5 3			: PBE-MD5-DES		: pbeWithMD5AndDES-CBC | 
 | 197 | pkcs5 4			: PBE-MD2-RC2-64	: pbeWithMD2AndRC2-CBC | 
 | 198 | pkcs5 6			: PBE-MD5-RC2-64	: pbeWithMD5AndRC2-CBC | 
 | 199 | pkcs5 10		: PBE-SHA1-DES		: pbeWithSHA1AndDES-CBC | 
 | 200 | pkcs5 11		: PBE-SHA1-RC2-64	: pbeWithSHA1AndRC2-CBC | 
 | 201 | !Cname id_pbkdf2 | 
 | 202 | pkcs5 12		:			: PBKDF2 | 
 | 203 | !Cname pbes2 | 
 | 204 | pkcs5 13		:			: PBES2 | 
 | 205 | !Cname pbmac1 | 
 | 206 | pkcs5 14		:			: PBMAC1 | 
 | 207 |  | 
 | 208 | pkcs 7			: pkcs7 | 
 | 209 | pkcs7 1			:			: pkcs7-data | 
 | 210 | !Cname pkcs7-signed | 
 | 211 | pkcs7 2			:			: pkcs7-signedData | 
 | 212 | !Cname pkcs7-enveloped | 
 | 213 | pkcs7 3			:			: pkcs7-envelopedData | 
 | 214 | !Cname pkcs7-signedAndEnveloped | 
 | 215 | pkcs7 4			:			: pkcs7-signedAndEnvelopedData | 
 | 216 | !Cname pkcs7-digest | 
 | 217 | pkcs7 5			:			: pkcs7-digestData | 
 | 218 | !Cname pkcs7-encrypted | 
 | 219 | pkcs7 6			:			: pkcs7-encryptedData | 
 | 220 |  | 
 | 221 | pkcs 9			: pkcs9 | 
 | 222 | !module pkcs9 | 
 | 223 | pkcs9 1			: 			: emailAddress | 
 | 224 | pkcs9 2			:			: unstructuredName | 
 | 225 | pkcs9 3			:			: contentType | 
 | 226 | pkcs9 4			:			: messageDigest | 
 | 227 | pkcs9 5			:			: signingTime | 
 | 228 | pkcs9 6			:			: countersignature | 
 | 229 | pkcs9 7			:			: challengePassword | 
 | 230 | pkcs9 8			:			: unstructuredAddress | 
 | 231 | !Cname extCertAttributes | 
 | 232 | pkcs9 9			:			: extendedCertificateAttributes | 
 | 233 | !global | 
 | 234 |  | 
 | 235 | !Cname ext-req | 
 | 236 | pkcs9 14		: extReq		: Extension Request | 
 | 237 |  | 
 | 238 | !Cname SMIMECapabilities | 
 | 239 | pkcs9 15		: SMIME-CAPS		: S/MIME Capabilities | 
 | 240 |  | 
 | 241 | # S/MIME | 
 | 242 | !Cname SMIME | 
 | 243 | pkcs9 16		: SMIME			: S/MIME | 
 | 244 | SMIME 0			: id-smime-mod | 
 | 245 | SMIME 1			: id-smime-ct | 
 | 246 | SMIME 2			: id-smime-aa | 
 | 247 | SMIME 3			: id-smime-alg | 
 | 248 | SMIME 4			: id-smime-cd | 
 | 249 | SMIME 5			: id-smime-spq | 
 | 250 | SMIME 6			: id-smime-cti | 
 | 251 |  | 
 | 252 | # S/MIME Modules | 
 | 253 | id-smime-mod 1		: id-smime-mod-cms | 
 | 254 | id-smime-mod 2		: id-smime-mod-ess | 
 | 255 | id-smime-mod 3		: id-smime-mod-oid | 
 | 256 | id-smime-mod 4		: id-smime-mod-msg-v3 | 
 | 257 | id-smime-mod 5		: id-smime-mod-ets-eSignature-88 | 
 | 258 | id-smime-mod 6		: id-smime-mod-ets-eSignature-97 | 
 | 259 | id-smime-mod 7		: id-smime-mod-ets-eSigPolicy-88 | 
 | 260 | id-smime-mod 8		: id-smime-mod-ets-eSigPolicy-97 | 
 | 261 |  | 
 | 262 | # S/MIME Content Types | 
 | 263 | id-smime-ct 1		: id-smime-ct-receipt | 
 | 264 | id-smime-ct 2		: id-smime-ct-authData | 
 | 265 | id-smime-ct 3		: id-smime-ct-publishCert | 
 | 266 | id-smime-ct 4		: id-smime-ct-TSTInfo | 
 | 267 | id-smime-ct 5		: id-smime-ct-TDTInfo | 
 | 268 | id-smime-ct 6		: id-smime-ct-contentInfo | 
 | 269 | id-smime-ct 7		: id-smime-ct-DVCSRequestData | 
 | 270 | id-smime-ct 8		: id-smime-ct-DVCSResponseData | 
 | 271 | id-smime-ct 9		: id-smime-ct-compressedData | 
 | 272 | id-smime-ct 19		: id-smime-ct-contentCollection | 
 | 273 | id-smime-ct 23		: id-smime-ct-authEnvelopedData | 
 | 274 | id-smime-ct 27		: id-ct-asciiTextWithCRLF | 
 | 275 | id-smime-ct 28		: id-ct-xml | 
 | 276 |  | 
 | 277 | # S/MIME Attributes | 
 | 278 | id-smime-aa 1		: id-smime-aa-receiptRequest | 
 | 279 | id-smime-aa 2		: id-smime-aa-securityLabel | 
 | 280 | id-smime-aa 3		: id-smime-aa-mlExpandHistory | 
 | 281 | id-smime-aa 4		: id-smime-aa-contentHint | 
 | 282 | id-smime-aa 5		: id-smime-aa-msgSigDigest | 
 | 283 | # obsolete | 
 | 284 | id-smime-aa 6		: id-smime-aa-encapContentType | 
 | 285 | id-smime-aa 7		: id-smime-aa-contentIdentifier | 
 | 286 | # obsolete | 
 | 287 | id-smime-aa 8		: id-smime-aa-macValue | 
 | 288 | id-smime-aa 9		: id-smime-aa-equivalentLabels | 
 | 289 | id-smime-aa 10		: id-smime-aa-contentReference | 
 | 290 | id-smime-aa 11		: id-smime-aa-encrypKeyPref | 
 | 291 | id-smime-aa 12		: id-smime-aa-signingCertificate | 
 | 292 | id-smime-aa 13		: id-smime-aa-smimeEncryptCerts | 
 | 293 | id-smime-aa 14		: id-smime-aa-timeStampToken | 
 | 294 | id-smime-aa 15		: id-smime-aa-ets-sigPolicyId | 
 | 295 | id-smime-aa 16		: id-smime-aa-ets-commitmentType | 
 | 296 | id-smime-aa 17		: id-smime-aa-ets-signerLocation | 
 | 297 | id-smime-aa 18		: id-smime-aa-ets-signerAttr | 
 | 298 | id-smime-aa 19		: id-smime-aa-ets-otherSigCert | 
 | 299 | id-smime-aa 20		: id-smime-aa-ets-contentTimestamp | 
 | 300 | id-smime-aa 21		: id-smime-aa-ets-CertificateRefs | 
 | 301 | id-smime-aa 22		: id-smime-aa-ets-RevocationRefs | 
 | 302 | id-smime-aa 23		: id-smime-aa-ets-certValues | 
 | 303 | id-smime-aa 24		: id-smime-aa-ets-revocationValues | 
 | 304 | id-smime-aa 25		: id-smime-aa-ets-escTimeStamp | 
 | 305 | id-smime-aa 26		: id-smime-aa-ets-certCRLTimestamp | 
 | 306 | id-smime-aa 27		: id-smime-aa-ets-archiveTimeStamp | 
 | 307 | id-smime-aa 28		: id-smime-aa-signatureType | 
 | 308 | id-smime-aa 29		: id-smime-aa-dvcs-dvc | 
 | 309 | id-smime-aa 47		: id-smime-aa-signingCertificateV2 | 
 | 310 |  | 
 | 311 | # S/MIME Algorithm Identifiers | 
 | 312 | # obsolete | 
 | 313 | id-smime-alg 1		: id-smime-alg-ESDHwith3DES | 
 | 314 | # obsolete | 
 | 315 | id-smime-alg 2		: id-smime-alg-ESDHwithRC2 | 
 | 316 | # obsolete | 
 | 317 | id-smime-alg 3		: id-smime-alg-3DESwrap | 
 | 318 | # obsolete | 
 | 319 | id-smime-alg 4		: id-smime-alg-RC2wrap | 
 | 320 | id-smime-alg 5		: id-smime-alg-ESDH | 
 | 321 | id-smime-alg 6		: id-smime-alg-CMS3DESwrap | 
 | 322 | id-smime-alg 7		: id-smime-alg-CMSRC2wrap | 
 | 323 | id-smime-alg 9		: id-alg-PWRI-KEK | 
 | 324 |  | 
 | 325 | # S/MIME Certificate Distribution | 
 | 326 | id-smime-cd 1		: id-smime-cd-ldap | 
 | 327 |  | 
 | 328 | # S/MIME Signature Policy Qualifier | 
 | 329 | id-smime-spq 1		: id-smime-spq-ets-sqt-uri | 
 | 330 | id-smime-spq 2		: id-smime-spq-ets-sqt-unotice | 
 | 331 |  | 
 | 332 | # S/MIME Commitment Type Identifier | 
 | 333 | id-smime-cti 1		: id-smime-cti-ets-proofOfOrigin | 
 | 334 | id-smime-cti 2		: id-smime-cti-ets-proofOfReceipt | 
 | 335 | id-smime-cti 3		: id-smime-cti-ets-proofOfDelivery | 
 | 336 | id-smime-cti 4		: id-smime-cti-ets-proofOfSender | 
 | 337 | id-smime-cti 5		: id-smime-cti-ets-proofOfApproval | 
 | 338 | id-smime-cti 6		: id-smime-cti-ets-proofOfCreation | 
 | 339 |  | 
 | 340 | pkcs9 20		:			: friendlyName | 
 | 341 | pkcs9 21		:			: localKeyID | 
 | 342 | !Cname ms-csp-name | 
 | 343 | 1 3 6 1 4 1 311 17 1	: CSPName		: Microsoft CSP Name | 
 | 344 | 1 3 6 1 4 1 311 17 2	: LocalKeySet		: Microsoft Local Key set | 
 | 345 | !Alias certTypes pkcs9 22 | 
 | 346 | certTypes 1		:			: x509Certificate | 
 | 347 | certTypes 2		:			: sdsiCertificate | 
 | 348 | !Alias crlTypes pkcs9 23 | 
 | 349 | crlTypes 1		:			: x509Crl | 
 | 350 |  | 
 | 351 | !Alias pkcs12 pkcs 12 | 
 | 352 | !Alias pkcs12-pbeids pkcs12 1 | 
 | 353 |  | 
 | 354 | !Cname pbe-WithSHA1And128BitRC4 | 
 | 355 | pkcs12-pbeids 1		: PBE-SHA1-RC4-128	: pbeWithSHA1And128BitRC4 | 
 | 356 | !Cname pbe-WithSHA1And40BitRC4 | 
 | 357 | pkcs12-pbeids 2		: PBE-SHA1-RC4-40	: pbeWithSHA1And40BitRC4 | 
 | 358 | !Cname pbe-WithSHA1And3_Key_TripleDES-CBC | 
 | 359 | pkcs12-pbeids 3		: PBE-SHA1-3DES		: pbeWithSHA1And3-KeyTripleDES-CBC | 
 | 360 | !Cname pbe-WithSHA1And2_Key_TripleDES-CBC | 
 | 361 | pkcs12-pbeids 4		: PBE-SHA1-2DES		: pbeWithSHA1And2-KeyTripleDES-CBC | 
 | 362 | !Cname pbe-WithSHA1And128BitRC2-CBC | 
 | 363 | pkcs12-pbeids 5		: PBE-SHA1-RC2-128	: pbeWithSHA1And128BitRC2-CBC | 
 | 364 | !Cname pbe-WithSHA1And40BitRC2-CBC | 
 | 365 | pkcs12-pbeids 6		: PBE-SHA1-RC2-40	: pbeWithSHA1And40BitRC2-CBC | 
 | 366 |  | 
 | 367 | !Alias pkcs12-Version1 pkcs12 10 | 
 | 368 | !Alias pkcs12-BagIds pkcs12-Version1 1 | 
 | 369 | pkcs12-BagIds 1		:			: keyBag | 
 | 370 | pkcs12-BagIds 2		:			: pkcs8ShroudedKeyBag | 
 | 371 | pkcs12-BagIds 3		:			: certBag | 
 | 372 | pkcs12-BagIds 4		:			: crlBag | 
 | 373 | pkcs12-BagIds 5		:			: secretBag | 
 | 374 | pkcs12-BagIds 6		:			: safeContentsBag | 
 | 375 |  | 
 | 376 | rsadsi 2 2		: MD2			: md2 | 
 | 377 | rsadsi 2 4		: MD4			: md4 | 
 | 378 | rsadsi 2 5		: MD5			: md5 | 
 | 379 | 			: MD5-SHA1		: md5-sha1 | 
 | 380 | rsadsi 2 6		:			: hmacWithMD5 | 
 | 381 | rsadsi 2 7		:			: hmacWithSHA1 | 
 | 382 |  | 
 | 383 | sm-scheme 301           : SM2                   : sm2 | 
 | 384 |  | 
 | 385 | sm-scheme 401           : SM3                   : sm3 | 
 | 386 | sm-scheme 504           : RSA-SM3		: sm3WithRSAEncryption | 
 | 387 |  | 
 | 388 | # From RFC4231 | 
 | 389 | rsadsi 2 8		:			: hmacWithSHA224 | 
 | 390 | rsadsi 2 9		:			: hmacWithSHA256 | 
 | 391 | rsadsi 2 10		:			: hmacWithSHA384 | 
 | 392 | rsadsi 2 11		:			: hmacWithSHA512 | 
 | 393 |  | 
 | 394 | # From RFC8018 | 
 | 395 | rsadsi 2 12             :                       : hmacWithSHA512-224 | 
 | 396 | rsadsi 2 13             :                       : hmacWithSHA512-256 | 
 | 397 |  | 
 | 398 | rsadsi 3 2		: RC2-CBC		: rc2-cbc | 
 | 399 | 			: RC2-ECB		: rc2-ecb | 
 | 400 | !Cname rc2-cfb64 | 
 | 401 | 			: RC2-CFB		: rc2-cfb | 
 | 402 | !Cname rc2-ofb64 | 
 | 403 | 			: RC2-OFB		: rc2-ofb | 
 | 404 | 			: RC2-40-CBC		: rc2-40-cbc | 
 | 405 | 			: RC2-64-CBC		: rc2-64-cbc | 
 | 406 | rsadsi 3 4		: RC4			: rc4 | 
 | 407 | 			: RC4-40		: rc4-40 | 
 | 408 | rsadsi 3 7		: DES-EDE3-CBC		: des-ede3-cbc | 
 | 409 | rsadsi 3 8		: RC5-CBC		: rc5-cbc | 
 | 410 | 			: RC5-ECB		: rc5-ecb | 
 | 411 | !Cname rc5-cfb64 | 
 | 412 | 			: RC5-CFB		: rc5-cfb | 
 | 413 | !Cname rc5-ofb64 | 
 | 414 | 			: RC5-OFB		: rc5-ofb | 
 | 415 |  | 
 | 416 | !Cname ms-ext-req | 
 | 417 | 1 3 6 1 4 1 311 2 1 14	: msExtReq		: Microsoft Extension Request | 
 | 418 | !Cname ms-code-ind | 
 | 419 | 1 3 6 1 4 1 311 2 1 21	: msCodeInd		: Microsoft Individual Code Signing | 
 | 420 | !Cname ms-code-com | 
 | 421 | 1 3 6 1 4 1 311 2 1 22	: msCodeCom		: Microsoft Commercial Code Signing | 
 | 422 | !Cname ms-ctl-sign | 
 | 423 | 1 3 6 1 4 1 311 10 3 1	: msCTLSign		: Microsoft Trust List Signing | 
 | 424 | !Cname ms-sgc | 
 | 425 | 1 3 6 1 4 1 311 10 3 3	: msSGC			: Microsoft Server Gated Crypto | 
 | 426 | !Cname ms-efs | 
 | 427 | 1 3 6 1 4 1 311 10 3 4	: msEFS			: Microsoft Encrypted File System | 
 | 428 | !Cname ms-smartcard-login | 
 | 429 | 1 3 6 1 4 1 311 20 2 2	: msSmartcardLogin	: Microsoft Smartcard Login | 
 | 430 | !Cname ms-upn | 
 | 431 | 1 3 6 1 4 1 311 20 2 3	: msUPN			: Microsoft User Principal Name | 
 | 432 |  | 
 | 433 | 1 3 6 1 4 1 188 7 1 1 2	: IDEA-CBC		: idea-cbc | 
 | 434 | 			: IDEA-ECB		: idea-ecb | 
 | 435 | !Cname idea-cfb64 | 
 | 436 | 			: IDEA-CFB		: idea-cfb | 
 | 437 | !Cname idea-ofb64 | 
 | 438 | 			: IDEA-OFB		: idea-ofb | 
 | 439 |  | 
 | 440 | 1 3 6 1 4 1 3029 1 2	: BF-CBC		: bf-cbc | 
 | 441 | 			: BF-ECB		: bf-ecb | 
 | 442 | !Cname bf-cfb64 | 
 | 443 | 			: BF-CFB		: bf-cfb | 
 | 444 | !Cname bf-ofb64 | 
 | 445 | 			: BF-OFB		: bf-ofb | 
 | 446 |  | 
 | 447 | !Cname id-pkix | 
 | 448 | 1 3 6 1 5 5 7		: PKIX | 
 | 449 |  | 
 | 450 | # PKIX Arcs | 
 | 451 | id-pkix 0		: id-pkix-mod | 
 | 452 | id-pkix 1		: id-pe | 
 | 453 | id-pkix 2		: id-qt | 
 | 454 | id-pkix 3		: id-kp | 
 | 455 | id-pkix 4		: id-it | 
 | 456 | id-pkix 5		: id-pkip | 
 | 457 | id-pkix 6		: id-alg | 
 | 458 | id-pkix 7		: id-cmc | 
 | 459 | id-pkix 8		: id-on | 
 | 460 | id-pkix 9		: id-pda | 
 | 461 | id-pkix 10		: id-aca | 
 | 462 | id-pkix 11		: id-qcs | 
 | 463 | id-pkix 12		: id-cct | 
 | 464 | id-pkix 21		: id-ppl | 
 | 465 | id-pkix 48		: id-ad | 
 | 466 |  | 
 | 467 | # PKIX Modules | 
 | 468 | id-pkix-mod 1		: id-pkix1-explicit-88 | 
 | 469 | id-pkix-mod 2		: id-pkix1-implicit-88 | 
 | 470 | id-pkix-mod 3		: id-pkix1-explicit-93 | 
 | 471 | id-pkix-mod 4		: id-pkix1-implicit-93 | 
 | 472 | id-pkix-mod 5		: id-mod-crmf | 
 | 473 | id-pkix-mod 6		: id-mod-cmc | 
 | 474 | id-pkix-mod 7		: id-mod-kea-profile-88 | 
 | 475 | id-pkix-mod 8		: id-mod-kea-profile-93 | 
 | 476 | id-pkix-mod 9		: id-mod-cmp | 
 | 477 | id-pkix-mod 10		: id-mod-qualified-cert-88 | 
 | 478 | id-pkix-mod 11		: id-mod-qualified-cert-93 | 
 | 479 | id-pkix-mod 12		: id-mod-attribute-cert | 
 | 480 | id-pkix-mod 13		: id-mod-timestamp-protocol | 
 | 481 | id-pkix-mod 14		: id-mod-ocsp | 
 | 482 | id-pkix-mod 15		: id-mod-dvcs | 
 | 483 | id-pkix-mod 16		: id-mod-cmp2000 | 
 | 484 |  | 
 | 485 | # PKIX Private Extensions | 
 | 486 | !Cname info-access | 
 | 487 | id-pe 1			: authorityInfoAccess	: Authority Information Access | 
 | 488 | id-pe 2			: biometricInfo		: Biometric Info | 
 | 489 | id-pe 3			: qcStatements | 
 | 490 | id-pe 4			: ac-auditEntity | 
 | 491 | id-pe 5			: ac-targeting | 
 | 492 | id-pe 6			: aaControls | 
 | 493 | id-pe 7			: sbgp-ipAddrBlock | 
 | 494 | id-pe 8			: sbgp-autonomousSysNum | 
 | 495 | id-pe 9			: sbgp-routerIdentifier | 
 | 496 | id-pe 10		: ac-proxying | 
 | 497 | !Cname sinfo-access | 
 | 498 | id-pe 11		: subjectInfoAccess	: Subject Information Access | 
 | 499 | id-pe 14		: proxyCertInfo		: Proxy Certificate Information | 
 | 500 | id-pe 24		: tlsfeature		: TLS Feature | 
 | 501 |  | 
 | 502 | # PKIX policyQualifiers for Internet policy qualifiers | 
 | 503 | id-qt 1			: id-qt-cps		: Policy Qualifier CPS | 
 | 504 | id-qt 2			: id-qt-unotice		: Policy Qualifier User Notice | 
 | 505 | id-qt 3			: textNotice | 
 | 506 |  | 
 | 507 | # PKIX key purpose identifiers | 
 | 508 | !Cname server-auth | 
 | 509 | id-kp 1			: serverAuth		: TLS Web Server Authentication | 
 | 510 | !Cname client-auth | 
 | 511 | id-kp 2			: clientAuth		: TLS Web Client Authentication | 
 | 512 | !Cname code-sign | 
 | 513 | id-kp 3			: codeSigning		: Code Signing | 
 | 514 | !Cname email-protect | 
 | 515 | id-kp 4			: emailProtection	: E-mail Protection | 
 | 516 | id-kp 5			: ipsecEndSystem	: IPSec End System | 
 | 517 | id-kp 6			: ipsecTunnel		: IPSec Tunnel | 
 | 518 | id-kp 7			: ipsecUser		: IPSec User | 
 | 519 | !Cname time-stamp | 
 | 520 | id-kp 8			: timeStamping		: Time Stamping | 
 | 521 | # From OCSP spec RFC2560 | 
 | 522 | !Cname OCSP-sign | 
 | 523 | id-kp 9			: OCSPSigning		: OCSP Signing | 
 | 524 | id-kp 10		: DVCS			: dvcs | 
 | 525 | !Cname ipsec-IKE | 
 | 526 | id-kp 17                : ipsecIKE              : ipsec Internet Key Exchange | 
 | 527 | id-kp 18                : capwapAC              : Ctrl/provision WAP Access | 
 | 528 | id-kp 19                : capwapWTP             : Ctrl/Provision WAP Termination | 
 | 529 | !Cname sshClient | 
 | 530 | id-kp 21                : secureShellClient     : SSH Client | 
 | 531 | !Cname sshServer | 
 | 532 | id-kp 22                : secureShellServer     : SSH Server | 
 | 533 | id-kp 23                : sendRouter            : Send Router | 
 | 534 | id-kp 24                : sendProxiedRouter     : Send Proxied Router | 
 | 535 | id-kp 25                : sendOwner             : Send Owner | 
 | 536 | id-kp 26                : sendProxiedOwner      : Send Proxied Owner | 
 | 537 | id-kp 27                : cmcCA                 : CMC Certificate Authority | 
 | 538 | id-kp 28                : cmcRA                 : CMC Registration Authority | 
 | 539 |  | 
 | 540 | # CMP information types | 
 | 541 | id-it 1			: id-it-caProtEncCert | 
 | 542 | id-it 2			: id-it-signKeyPairTypes | 
 | 543 | id-it 3			: id-it-encKeyPairTypes | 
 | 544 | id-it 4			: id-it-preferredSymmAlg | 
 | 545 | id-it 5			: id-it-caKeyUpdateInfo | 
 | 546 | id-it 6			: id-it-currentCRL | 
 | 547 | id-it 7			: id-it-unsupportedOIDs | 
 | 548 | # obsolete | 
 | 549 | id-it 8			: id-it-subscriptionRequest | 
 | 550 | # obsolete | 
 | 551 | id-it 9			: id-it-subscriptionResponse | 
 | 552 | id-it 10		: id-it-keyPairParamReq | 
 | 553 | id-it 11		: id-it-keyPairParamRep | 
 | 554 | id-it 12		: id-it-revPassphrase | 
 | 555 | id-it 13		: id-it-implicitConfirm | 
 | 556 | id-it 14		: id-it-confirmWaitTime | 
 | 557 | id-it 15		: id-it-origPKIMessage | 
 | 558 | id-it 16		: id-it-suppLangTags | 
 | 559 |  | 
 | 560 | # CRMF registration | 
 | 561 | id-pkip 1		: id-regCtrl | 
 | 562 | id-pkip 2		: id-regInfo | 
 | 563 |  | 
 | 564 | # CRMF registration controls | 
 | 565 | id-regCtrl 1		: id-regCtrl-regToken | 
 | 566 | id-regCtrl 2		: id-regCtrl-authenticator | 
 | 567 | id-regCtrl 3		: id-regCtrl-pkiPublicationInfo | 
 | 568 | id-regCtrl 4		: id-regCtrl-pkiArchiveOptions | 
 | 569 | id-regCtrl 5		: id-regCtrl-oldCertID | 
 | 570 | id-regCtrl 6		: id-regCtrl-protocolEncrKey | 
 | 571 |  | 
 | 572 | # CRMF registration information | 
 | 573 | id-regInfo 1		: id-regInfo-utf8Pairs | 
 | 574 | id-regInfo 2		: id-regInfo-certReq | 
 | 575 |  | 
 | 576 | # algorithms | 
 | 577 | id-alg 1		: id-alg-des40 | 
 | 578 | id-alg 2		: id-alg-noSignature | 
 | 579 | id-alg 3		: id-alg-dh-sig-hmac-sha1 | 
 | 580 | id-alg 4		: id-alg-dh-pop | 
 | 581 |  | 
 | 582 | # CMC controls | 
 | 583 | id-cmc 1		: id-cmc-statusInfo | 
 | 584 | id-cmc 2		: id-cmc-identification | 
 | 585 | id-cmc 3		: id-cmc-identityProof | 
 | 586 | id-cmc 4		: id-cmc-dataReturn | 
 | 587 | id-cmc 5		: id-cmc-transactionId | 
 | 588 | id-cmc 6		: id-cmc-senderNonce | 
 | 589 | id-cmc 7		: id-cmc-recipientNonce | 
 | 590 | id-cmc 8		: id-cmc-addExtensions | 
 | 591 | id-cmc 9		: id-cmc-encryptedPOP | 
 | 592 | id-cmc 10		: id-cmc-decryptedPOP | 
 | 593 | id-cmc 11		: id-cmc-lraPOPWitness | 
 | 594 | id-cmc 15		: id-cmc-getCert | 
 | 595 | id-cmc 16		: id-cmc-getCRL | 
 | 596 | id-cmc 17		: id-cmc-revokeRequest | 
 | 597 | id-cmc 18		: id-cmc-regInfo | 
 | 598 | id-cmc 19		: id-cmc-responseInfo | 
 | 599 | id-cmc 21		: id-cmc-queryPending | 
 | 600 | id-cmc 22		: id-cmc-popLinkRandom | 
 | 601 | id-cmc 23		: id-cmc-popLinkWitness | 
 | 602 | id-cmc 24		: id-cmc-confirmCertAcceptance | 
 | 603 |  | 
 | 604 | # other names | 
 | 605 | id-on 1			: id-on-personalData | 
 | 606 | id-on 3			: id-on-permanentIdentifier : Permanent Identifier | 
 | 607 |  | 
 | 608 | # personal data attributes | 
 | 609 | id-pda 1		: id-pda-dateOfBirth | 
 | 610 | id-pda 2		: id-pda-placeOfBirth | 
 | 611 | id-pda 3		: id-pda-gender | 
 | 612 | id-pda 4		: id-pda-countryOfCitizenship | 
 | 613 | id-pda 5		: id-pda-countryOfResidence | 
 | 614 |  | 
 | 615 | # attribute certificate attributes | 
 | 616 | id-aca 1		: id-aca-authenticationInfo | 
 | 617 | id-aca 2		: id-aca-accessIdentity | 
 | 618 | id-aca 3		: id-aca-chargingIdentity | 
 | 619 | id-aca 4		: id-aca-group | 
 | 620 | # attention : the following seems to be obsolete, replace by 'role' | 
 | 621 | id-aca 5		: id-aca-role | 
 | 622 | id-aca 6		: id-aca-encAttrs | 
 | 623 |  | 
 | 624 | # qualified certificate statements | 
 | 625 | id-qcs 1		: id-qcs-pkixQCSyntax-v1 | 
 | 626 |  | 
 | 627 | # CMC content types | 
 | 628 | id-cct 1		: id-cct-crs | 
 | 629 | id-cct 2		: id-cct-PKIData | 
 | 630 | id-cct 3		: id-cct-PKIResponse | 
 | 631 |  | 
 | 632 | # Predefined Proxy Certificate policy languages | 
 | 633 | id-ppl 0		: id-ppl-anyLanguage	: Any language | 
 | 634 | id-ppl 1		: id-ppl-inheritAll	: Inherit all | 
 | 635 | id-ppl 2		: id-ppl-independent	: Independent | 
 | 636 |  | 
 | 637 | # access descriptors for authority info access extension | 
 | 638 | !Cname ad-OCSP | 
 | 639 | id-ad 1			: OCSP			: OCSP | 
 | 640 | !Cname ad-ca-issuers | 
 | 641 | id-ad 2			: caIssuers		: CA Issuers | 
 | 642 | !Cname ad-timeStamping | 
 | 643 | id-ad 3			: ad_timestamping	: AD Time Stamping | 
 | 644 | !Cname ad-dvcs | 
 | 645 | id-ad 4			: AD_DVCS		: ad dvcs | 
 | 646 | id-ad 5			: caRepository		: CA Repository | 
 | 647 |  | 
 | 648 |  | 
 | 649 | !Alias id-pkix-OCSP ad-OCSP | 
 | 650 | !module id-pkix-OCSP | 
 | 651 | !Cname basic | 
 | 652 | id-pkix-OCSP 1		: basicOCSPResponse	: Basic OCSP Response | 
 | 653 | id-pkix-OCSP 2		: Nonce			: OCSP Nonce | 
 | 654 | id-pkix-OCSP 3		: CrlID			: OCSP CRL ID | 
 | 655 | id-pkix-OCSP 4		: acceptableResponses	: Acceptable OCSP Responses | 
 | 656 | id-pkix-OCSP 5		: noCheck		: OCSP No Check | 
 | 657 | id-pkix-OCSP 6		: archiveCutoff		: OCSP Archive Cutoff | 
 | 658 | id-pkix-OCSP 7		: serviceLocator	: OCSP Service Locator | 
 | 659 | id-pkix-OCSP 8		: extendedStatus	: Extended OCSP Status | 
 | 660 | id-pkix-OCSP 9		: valid | 
 | 661 | id-pkix-OCSP 10		: path | 
 | 662 | id-pkix-OCSP 11		: trustRoot		: Trust Root | 
 | 663 | !global | 
 | 664 |  | 
 | 665 | 1 3 14 3 2		: algorithm		: algorithm | 
 | 666 | algorithm 3		: RSA-NP-MD5		: md5WithRSA | 
 | 667 | algorithm 6		: DES-ECB		: des-ecb | 
 | 668 | algorithm 7		: DES-CBC		: des-cbc | 
 | 669 | !Cname des-ofb64 | 
 | 670 | algorithm 8		: DES-OFB		: des-ofb | 
 | 671 | !Cname des-cfb64 | 
 | 672 | algorithm 9		: DES-CFB		: des-cfb | 
 | 673 | algorithm 11		: rsaSignature | 
 | 674 | !Cname dsa-2 | 
 | 675 | algorithm 12		: DSA-old		: dsaEncryption-old | 
 | 676 | algorithm 13		: DSA-SHA		: dsaWithSHA | 
 | 677 | algorithm 15		: RSA-SHA		: shaWithRSAEncryption | 
 | 678 | !Cname des-ede-ecb | 
 | 679 | algorithm 17		: DES-EDE		: des-ede | 
 | 680 | !Cname des-ede3-ecb | 
 | 681 | 			: DES-EDE3		: des-ede3 | 
 | 682 | 			: DES-EDE-CBC		: des-ede-cbc | 
 | 683 | !Cname des-ede-cfb64 | 
 | 684 | 			: DES-EDE-CFB		: des-ede-cfb | 
 | 685 | !Cname des-ede3-cfb64 | 
 | 686 | 			: DES-EDE3-CFB		: des-ede3-cfb | 
 | 687 | !Cname des-ede-ofb64 | 
 | 688 | 			: DES-EDE-OFB		: des-ede-ofb | 
 | 689 | !Cname des-ede3-ofb64 | 
 | 690 | 			: DES-EDE3-OFB		: des-ede3-ofb | 
 | 691 | 			: DESX-CBC		: desx-cbc | 
 | 692 | algorithm 18		: SHA			: sha | 
 | 693 | algorithm 26		: SHA1			: sha1 | 
 | 694 | !Cname dsaWithSHA1-2 | 
 | 695 | algorithm 27		: DSA-SHA1-old		: dsaWithSHA1-old | 
 | 696 | algorithm 29		: RSA-SHA1-2		: sha1WithRSA | 
 | 697 |  | 
 | 698 | 1 3 36 3 2 1		: RIPEMD160		: ripemd160 | 
 | 699 | 1 3 36 3 3 1 2		: RSA-RIPEMD160		: ripemd160WithRSA | 
 | 700 |  | 
 | 701 | 1 3 6 1 4 1 1722 12 2 1 16 : BLAKE2b512        : blake2b512 | 
 | 702 | 1 3 6 1 4 1 1722 12 2 2 8  : BLAKE2s256        : blake2s256 | 
 | 703 |  | 
 | 704 | !Cname sxnet | 
 | 705 | 1 3 101 1 4 1		: SXNetID		: Strong Extranet ID | 
 | 706 |  | 
 | 707 | 2 5			: X500			: directory services (X.500) | 
 | 708 |  | 
 | 709 | X500 4			: X509 | 
 | 710 | X509 3			: CN			: commonName | 
 | 711 | X509 4			: SN			: surname | 
 | 712 | X509 5			: 			: serialNumber | 
 | 713 | X509 6			: C			: countryName | 
 | 714 | X509 7			: L			: localityName | 
 | 715 | X509 8			: ST			: stateOrProvinceName | 
 | 716 | X509 9			: street		: streetAddress | 
 | 717 | X509 10			: O			: organizationName | 
 | 718 | X509 11			: OU			: organizationalUnitName | 
 | 719 | X509 12			: title			: title | 
 | 720 | X509 13			: 			: description | 
 | 721 | X509 14			: 			: searchGuide | 
 | 722 | X509 15			: 			: businessCategory | 
 | 723 | X509 16			: 			: postalAddress | 
 | 724 | X509 17			: 			: postalCode | 
 | 725 | X509 18			: 			: postOfficeBox | 
 | 726 | X509 19			: 			: physicalDeliveryOfficeName | 
 | 727 | X509 20			: 			: telephoneNumber | 
 | 728 | X509 21			: 			: telexNumber | 
 | 729 | X509 22			: 			: teletexTerminalIdentifier | 
 | 730 | X509 23			: 			: facsimileTelephoneNumber | 
 | 731 | X509 24			: 			: x121Address | 
 | 732 | X509 25			: 			: internationaliSDNNumber | 
 | 733 | X509 26			: 			: registeredAddress | 
 | 734 | X509 27			: 			: destinationIndicator | 
 | 735 | X509 28			: 			: preferredDeliveryMethod | 
 | 736 | X509 29			: 			: presentationAddress | 
 | 737 | X509 30			: 			: supportedApplicationContext | 
 | 738 | X509 31			: member		: | 
 | 739 | X509 32			: owner			: | 
 | 740 | X509 33			: 			: roleOccupant | 
 | 741 | X509 34			: seeAlso		: | 
 | 742 | X509 35			: 			: userPassword | 
 | 743 | X509 36			: 			: userCertificate | 
 | 744 | X509 37			: 			: cACertificate | 
 | 745 | X509 38			: 			: authorityRevocationList | 
 | 746 | X509 39			: 			: certificateRevocationList | 
 | 747 | X509 40			: 			: crossCertificatePair | 
 | 748 | X509 41			: name			: name | 
 | 749 | X509 42			: GN			: givenName | 
 | 750 | X509 43			: initials		: initials | 
 | 751 | X509 44			: 			: generationQualifier | 
 | 752 | X509 45			: 			: x500UniqueIdentifier | 
 | 753 | X509 46			: dnQualifier		: dnQualifier | 
 | 754 | X509 47			: 			: enhancedSearchGuide | 
 | 755 | X509 48			: 			: protocolInformation | 
 | 756 | X509 49			: 			: distinguishedName | 
 | 757 | X509 50			: 			: uniqueMember | 
 | 758 | X509 51			: 			: houseIdentifier | 
 | 759 | X509 52			: 			: supportedAlgorithms | 
 | 760 | X509 53			: 			: deltaRevocationList | 
 | 761 | X509 54			: dmdName		: | 
 | 762 | X509 65			:			: pseudonym | 
 | 763 | X509 72			: role			: role | 
 | 764 | X509 97                 :			: organizationIdentifier | 
 | 765 | X509 98			: c3			: countryCode3c | 
 | 766 | X509 99			: n3			: countryCode3n | 
 | 767 | X509 100		:			: dnsName | 
 | 768 |  | 
 | 769 |  | 
 | 770 | X500 8			: X500algorithms	: directory services - algorithms | 
 | 771 | X500algorithms 1 1	: RSA			: rsa | 
 | 772 | X500algorithms 3 100	: RSA-MDC2		: mdc2WithRSA | 
 | 773 | X500algorithms 3 101	: MDC2			: mdc2 | 
 | 774 |  | 
 | 775 | X500 29			: id-ce | 
 | 776 | !Cname subject-directory-attributes | 
 | 777 | id-ce 9			: subjectDirectoryAttributes : X509v3 Subject Directory Attributes | 
 | 778 | !Cname subject-key-identifier | 
 | 779 | id-ce 14		: subjectKeyIdentifier	: X509v3 Subject Key Identifier | 
 | 780 | !Cname key-usage | 
 | 781 | id-ce 15		: keyUsage		: X509v3 Key Usage | 
 | 782 | !Cname private-key-usage-period | 
 | 783 | id-ce 16		: privateKeyUsagePeriod	: X509v3 Private Key Usage Period | 
 | 784 | !Cname subject-alt-name | 
 | 785 | id-ce 17		: subjectAltName	: X509v3 Subject Alternative Name | 
 | 786 | !Cname issuer-alt-name | 
 | 787 | id-ce 18		: issuerAltName		: X509v3 Issuer Alternative Name | 
 | 788 | !Cname basic-constraints | 
 | 789 | id-ce 19		: basicConstraints	: X509v3 Basic Constraints | 
 | 790 | !Cname crl-number | 
 | 791 | id-ce 20		: crlNumber		: X509v3 CRL Number | 
 | 792 | !Cname crl-reason | 
 | 793 | id-ce 21		: CRLReason		: X509v3 CRL Reason Code | 
 | 794 | !Cname invalidity-date | 
 | 795 | id-ce 24		: invalidityDate	: Invalidity Date | 
 | 796 | !Cname delta-crl | 
 | 797 | id-ce 27		: deltaCRL		: X509v3 Delta CRL Indicator | 
 | 798 | !Cname issuing-distribution-point | 
 | 799 | id-ce 28		: issuingDistributionPoint : X509v3 Issuing Distribution Point | 
 | 800 | !Cname certificate-issuer | 
 | 801 | id-ce 29		: certificateIssuer	: X509v3 Certificate Issuer | 
 | 802 | !Cname name-constraints | 
 | 803 | id-ce 30		: nameConstraints	: X509v3 Name Constraints | 
 | 804 | !Cname crl-distribution-points | 
 | 805 | id-ce 31		: crlDistributionPoints	: X509v3 CRL Distribution Points | 
 | 806 | !Cname certificate-policies | 
 | 807 | id-ce 32		: certificatePolicies	: X509v3 Certificate Policies | 
 | 808 | !Cname any-policy | 
 | 809 | certificate-policies 0	: anyPolicy		: X509v3 Any Policy | 
 | 810 | !Cname policy-mappings | 
 | 811 | id-ce 33		: policyMappings	: X509v3 Policy Mappings | 
 | 812 | !Cname authority-key-identifier | 
 | 813 | id-ce 35		: authorityKeyIdentifier : X509v3 Authority Key Identifier | 
 | 814 | !Cname policy-constraints | 
 | 815 | id-ce 36		: policyConstraints	: X509v3 Policy Constraints | 
 | 816 | !Cname ext-key-usage | 
 | 817 | id-ce 37		: extendedKeyUsage	: X509v3 Extended Key Usage | 
 | 818 | !Cname freshest-crl | 
 | 819 | id-ce 46		: freshestCRL		: X509v3 Freshest CRL | 
 | 820 | !Cname inhibit-any-policy | 
 | 821 | id-ce 54		: inhibitAnyPolicy	: X509v3 Inhibit Any Policy | 
 | 822 | !Cname target-information | 
 | 823 | id-ce 55		: targetInformation	: X509v3 AC Targeting | 
 | 824 | !Cname no-rev-avail | 
 | 825 | id-ce 56		: noRevAvail		: X509v3 No Revocation Available | 
 | 826 |  | 
 | 827 | # From RFC5280 | 
 | 828 | ext-key-usage 0		: anyExtendedKeyUsage	: Any Extended Key Usage | 
 | 829 |  | 
 | 830 |  | 
 | 831 | !Cname netscape | 
 | 832 | 2 16 840 1 113730	: Netscape		: Netscape Communications Corp. | 
 | 833 | !Cname netscape-cert-extension | 
 | 834 | netscape 1		: nsCertExt		: Netscape Certificate Extension | 
 | 835 | !Cname netscape-data-type | 
 | 836 | netscape 2		: nsDataType		: Netscape Data Type | 
 | 837 | !Cname netscape-cert-type | 
 | 838 | netscape-cert-extension 1 : nsCertType		: Netscape Cert Type | 
 | 839 | !Cname netscape-base-url | 
 | 840 | netscape-cert-extension 2 : nsBaseUrl		: Netscape Base Url | 
 | 841 | !Cname netscape-revocation-url | 
 | 842 | netscape-cert-extension 3 : nsRevocationUrl	: Netscape Revocation Url | 
 | 843 | !Cname netscape-ca-revocation-url | 
 | 844 | netscape-cert-extension 4 : nsCaRevocationUrl	: Netscape CA Revocation Url | 
 | 845 | !Cname netscape-renewal-url | 
 | 846 | netscape-cert-extension 7 : nsRenewalUrl	: Netscape Renewal Url | 
 | 847 | !Cname netscape-ca-policy-url | 
 | 848 | netscape-cert-extension 8 : nsCaPolicyUrl	: Netscape CA Policy Url | 
 | 849 | !Cname netscape-ssl-server-name | 
 | 850 | netscape-cert-extension 12 : nsSslServerName	: Netscape SSL Server Name | 
 | 851 | !Cname netscape-comment | 
 | 852 | netscape-cert-extension 13 : nsComment		: Netscape Comment | 
 | 853 | !Cname netscape-cert-sequence | 
 | 854 | netscape-data-type 5	: nsCertSequence	: Netscape Certificate Sequence | 
 | 855 | !Cname ns-sgc | 
 | 856 | netscape 4 1		: nsSGC			: Netscape Server Gated Crypto | 
 | 857 |  | 
 | 858 | # iso(1) | 
 | 859 | iso 3			: ORG			: org | 
 | 860 | org 6			: DOD			: dod | 
 | 861 | dod 1			: IANA			: iana | 
 | 862 | !Alias internet iana | 
 | 863 |  | 
 | 864 | internet 1		: directory		: Directory | 
 | 865 | internet 2		: mgmt			: Management | 
 | 866 | internet 3		: experimental		: Experimental | 
 | 867 | internet 4		: private		: Private | 
 | 868 | internet 5		: security		: Security | 
 | 869 | internet 6		: snmpv2		: SNMPv2 | 
 | 870 | # Documents refer to "internet 7" as "mail". This however leads to ambiguities | 
 | 871 | # with RFC2798, Section 9.1.3, where "mail" is defined as the short name for | 
 | 872 | # rfc822Mailbox. The short name is therefore here left out for a reason. | 
 | 873 | # Subclasses of "mail", e.g. "MIME MHS" don't constitute a problem, as | 
 | 874 | # references are realized via long name "Mail" (with capital M). | 
 | 875 | internet 7		:			: Mail | 
 | 876 |  | 
 | 877 | Private 1		: enterprises		: Enterprises | 
 | 878 |  | 
 | 879 | # RFC 2247 | 
 | 880 | Enterprises 1466 344	: dcobject		: dcObject | 
 | 881 |  | 
 | 882 | # RFC 1495 | 
 | 883 | Mail 1			: mime-mhs		: MIME MHS | 
 | 884 | mime-mhs 1		: mime-mhs-headings	: mime-mhs-headings | 
 | 885 | mime-mhs 2		: mime-mhs-bodies	: mime-mhs-bodies | 
 | 886 | mime-mhs-headings 1	: id-hex-partial-message : id-hex-partial-message | 
 | 887 | mime-mhs-headings 2	: id-hex-multipart-message : id-hex-multipart-message | 
 | 888 |  | 
 | 889 | # RFC 3274 | 
 | 890 | !Cname zlib-compression | 
 | 891 | id-smime-alg 8		: ZLIB			: zlib compression | 
 | 892 |  | 
 | 893 | # AES aka Rijndael | 
 | 894 |  | 
 | 895 | !Alias csor 2 16 840 1 101 3 | 
 | 896 | !Alias nistAlgorithms csor 4 | 
 | 897 | !Alias aes nistAlgorithms 1 | 
 | 898 |  | 
 | 899 | aes 1			: AES-128-ECB		: aes-128-ecb | 
 | 900 | aes 2			: AES-128-CBC		: aes-128-cbc | 
 | 901 | !Cname aes-128-ofb128 | 
 | 902 | aes 3			: AES-128-OFB		: aes-128-ofb | 
 | 903 | !Cname aes-128-cfb128 | 
 | 904 | aes 4			: AES-128-CFB		: aes-128-cfb | 
 | 905 | aes 5			: id-aes128-wrap | 
 | 906 | aes 6			: id-aes128-GCM		: aes-128-gcm | 
 | 907 | aes 7			: id-aes128-CCM		: aes-128-ccm | 
 | 908 | aes 8			: id-aes128-wrap-pad | 
 | 909 |  | 
 | 910 | aes 21			: AES-192-ECB		: aes-192-ecb | 
 | 911 | aes 22			: AES-192-CBC		: aes-192-cbc | 
 | 912 | !Cname aes-192-ofb128 | 
 | 913 | aes 23			: AES-192-OFB		: aes-192-ofb | 
 | 914 | !Cname aes-192-cfb128 | 
 | 915 | aes 24			: AES-192-CFB		: aes-192-cfb | 
 | 916 | aes 25			: id-aes192-wrap | 
 | 917 | aes 26			: id-aes192-GCM		: aes-192-gcm | 
 | 918 | aes 27			: id-aes192-CCM		: aes-192-ccm | 
 | 919 | aes 28			: id-aes192-wrap-pad | 
 | 920 |  | 
 | 921 | aes 41			: AES-256-ECB		: aes-256-ecb | 
 | 922 | aes 42			: AES-256-CBC		: aes-256-cbc | 
 | 923 | !Cname aes-256-ofb128 | 
 | 924 | aes 43			: AES-256-OFB		: aes-256-ofb | 
 | 925 | !Cname aes-256-cfb128 | 
 | 926 | aes 44			: AES-256-CFB		: aes-256-cfb | 
 | 927 | aes 45			: id-aes256-wrap | 
 | 928 | aes 46			: id-aes256-GCM		: aes-256-gcm | 
 | 929 | aes 47			: id-aes256-CCM		: aes-256-ccm | 
 | 930 | aes 48			: id-aes256-wrap-pad | 
 | 931 |  | 
 | 932 | ieee-siswg 0 1 1        : AES-128-XTS		: aes-128-xts | 
 | 933 | ieee-siswg 0 1 2        : AES-256-XTS		: aes-256-xts | 
 | 934 |  | 
 | 935 | # There are no OIDs for these modes... | 
 | 936 |  | 
 | 937 | 			: AES-128-CFB1		: aes-128-cfb1 | 
 | 938 | 			: AES-192-CFB1		: aes-192-cfb1 | 
 | 939 | 			: AES-256-CFB1		: aes-256-cfb1 | 
 | 940 | 			: AES-128-CFB8		: aes-128-cfb8 | 
 | 941 | 			: AES-192-CFB8		: aes-192-cfb8 | 
 | 942 | 			: AES-256-CFB8		: aes-256-cfb8 | 
 | 943 | 			: AES-128-CTR		: aes-128-ctr | 
 | 944 | 			: AES-192-CTR		: aes-192-ctr | 
 | 945 | 			: AES-256-CTR		: aes-256-ctr | 
 | 946 | 			: AES-128-OCB		: aes-128-ocb | 
 | 947 | 			: AES-192-OCB		: aes-192-ocb | 
 | 948 | 			: AES-256-OCB		: aes-256-ocb | 
 | 949 | 			: DES-CFB1		: des-cfb1 | 
 | 950 | 			: DES-CFB8		: des-cfb8 | 
 | 951 | 			: DES-EDE3-CFB1		: des-ede3-cfb1 | 
 | 952 | 			: DES-EDE3-CFB8		: des-ede3-cfb8 | 
 | 953 |  | 
 | 954 | # OIDs for SHA224, SHA256, SHA385 and SHA512, according to x9.84 and | 
 | 955 | # http://csrc.nist.gov/groups/ST/crypto_apps_infra/csor/algorithms.html | 
 | 956 | # "Middle" names are specified to be id-sha256, id-sha384, etc., but | 
 | 957 | # we adhere to unprefixed capitals for backward compatibility... | 
 | 958 | !Alias nist_hashalgs nistAlgorithms 2 | 
 | 959 | nist_hashalgs 1		: SHA256		: sha256 | 
 | 960 | nist_hashalgs 2		: SHA384		: sha384 | 
 | 961 | nist_hashalgs 3		: SHA512		: sha512 | 
 | 962 | nist_hashalgs 4		: SHA224		: sha224 | 
 | 963 | nist_hashalgs 5		: SHA512-224		: sha512-224 | 
 | 964 | nist_hashalgs 6		: SHA512-256		: sha512-256 | 
 | 965 | nist_hashalgs 7		: SHA3-224		: sha3-224 | 
 | 966 | nist_hashalgs 8		: SHA3-256		: sha3-256 | 
 | 967 | nist_hashalgs 9		: SHA3-384		: sha3-384 | 
 | 968 | nist_hashalgs 10	: SHA3-512		: sha3-512 | 
 | 969 | nist_hashalgs 11	: SHAKE128		: shake128 | 
 | 970 | nist_hashalgs 12	: SHAKE256		: shake256 | 
 | 971 | nist_hashalgs 13	: id-hmacWithSHA3-224	: hmac-sha3-224 | 
 | 972 | nist_hashalgs 14	: id-hmacWithSHA3-256	: hmac-sha3-256 | 
 | 973 | nist_hashalgs 15	: id-hmacWithSHA3-384	: hmac-sha3-384 | 
 | 974 | nist_hashalgs 16	: id-hmacWithSHA3-512	: hmac-sha3-512 | 
 | 975 | # Below two are incomplete OIDs, to be uncommented when we figure out | 
 | 976 | # how to handle them... | 
 | 977 | # nist_hashalgs 17	: id-shake128-len	: shake128-len | 
 | 978 | # nist_hashalgs 18	: id-shake256-len	: shake256-len | 
 | 979 |  | 
 | 980 | # OIDs for dsa-with-sha224 and dsa-with-sha256 | 
 | 981 | !Alias dsa_with_sha2 nistAlgorithms 3 | 
 | 982 | dsa_with_sha2 1		: dsa_with_SHA224 | 
 | 983 | dsa_with_sha2 2		: dsa_with_SHA256 | 
 | 984 | # Above two belong below, but kept as they are for backward compatibility | 
 | 985 | !Alias sigAlgs nistAlgorithms 3 | 
 | 986 | sigAlgs 3	: id-dsa-with-sha384	: dsa_with_SHA384 | 
 | 987 | sigAlgs 4	: id-dsa-with-sha512	: dsa_with_SHA512 | 
 | 988 | sigAlgs 5	: id-dsa-with-sha3-224	: dsa_with_SHA3-224 | 
 | 989 | sigAlgs 6	: id-dsa-with-sha3-256	: dsa_with_SHA3-256 | 
 | 990 | sigAlgs 7	: id-dsa-with-sha3-384	: dsa_with_SHA3-384 | 
 | 991 | sigAlgs 8	: id-dsa-with-sha3-512	: dsa_with_SHA3-512 | 
 | 992 | sigAlgs 9	: id-ecdsa-with-sha3-224	: ecdsa_with_SHA3-224 | 
 | 993 | sigAlgs 10	: id-ecdsa-with-sha3-256	: ecdsa_with_SHA3-256 | 
 | 994 | sigAlgs 11	: id-ecdsa-with-sha3-384	: ecdsa_with_SHA3-384 | 
 | 995 | sigAlgs 12	: id-ecdsa-with-sha3-512	: ecdsa_with_SHA3-512 | 
 | 996 | sigAlgs 13	: id-rsassa-pkcs1-v1_5-with-sha3-224	: RSA-SHA3-224 | 
 | 997 | sigAlgs 14	: id-rsassa-pkcs1-v1_5-with-sha3-256	: RSA-SHA3-256 | 
 | 998 | sigAlgs 15	: id-rsassa-pkcs1-v1_5-with-sha3-384	: RSA-SHA3-384 | 
 | 999 | sigAlgs 16	: id-rsassa-pkcs1-v1_5-with-sha3-512	: RSA-SHA3-512 | 
 | 1000 |  | 
 | 1001 | # Hold instruction CRL entry extension | 
 | 1002 | !Cname hold-instruction-code | 
 | 1003 | id-ce 23		: holdInstructionCode	: Hold Instruction Code | 
 | 1004 | !Alias holdInstruction	X9-57 2 | 
 | 1005 | !Cname hold-instruction-none | 
 | 1006 | holdInstruction 1	: holdInstructionNone	: Hold Instruction None | 
 | 1007 | !Cname hold-instruction-call-issuer | 
 | 1008 | holdInstruction 2	: holdInstructionCallIssuer : Hold Instruction Call Issuer | 
 | 1009 | !Cname hold-instruction-reject | 
 | 1010 | holdInstruction 3	: holdInstructionReject	: Hold Instruction Reject | 
 | 1011 |  | 
 | 1012 | # OID's from ITU-T.  Most of this is defined in RFC 1274.  A couple of | 
 | 1013 | # them are also mentioned in RFC 2247 | 
 | 1014 | itu-t 9			: data | 
 | 1015 | data 2342		: pss | 
 | 1016 | pss 19200300		: ucl | 
 | 1017 | ucl 100			: pilot | 
 | 1018 | pilot 1			:			: pilotAttributeType | 
 | 1019 | pilot 3			:			: pilotAttributeSyntax | 
 | 1020 | pilot 4			:			: pilotObjectClass | 
 | 1021 | pilot 10		:			: pilotGroups | 
 | 1022 | pilotAttributeSyntax 4	:			: iA5StringSyntax | 
 | 1023 | pilotAttributeSyntax 5	:			: caseIgnoreIA5StringSyntax | 
 | 1024 | pilotObjectClass 3	:			: pilotObject | 
 | 1025 | pilotObjectClass 4	:			: pilotPerson | 
 | 1026 | pilotObjectClass 5	: account | 
 | 1027 | pilotObjectClass 6	: document | 
 | 1028 | pilotObjectClass 7	: room | 
 | 1029 | pilotObjectClass 9	:			: documentSeries | 
 | 1030 | pilotObjectClass 13	: domain		: Domain | 
 | 1031 | pilotObjectClass 14	:			: rFC822localPart | 
 | 1032 | pilotObjectClass 15	:			: dNSDomain | 
 | 1033 | pilotObjectClass 17	:			: domainRelatedObject | 
 | 1034 | pilotObjectClass 18	:			: friendlyCountry | 
 | 1035 | pilotObjectClass 19	:			: simpleSecurityObject | 
 | 1036 | pilotObjectClass 20	:			: pilotOrganization | 
 | 1037 | pilotObjectClass 21	:			: pilotDSA | 
 | 1038 | pilotObjectClass 22	:			: qualityLabelledData | 
 | 1039 | pilotAttributeType 1	: UID			: userId | 
 | 1040 | pilotAttributeType 2	:			: textEncodedORAddress | 
 | 1041 | pilotAttributeType 3	: mail			: rfc822Mailbox | 
 | 1042 | pilotAttributeType 4	: info | 
 | 1043 | pilotAttributeType 5	:			: favouriteDrink | 
 | 1044 | pilotAttributeType 6	:			: roomNumber | 
 | 1045 | pilotAttributeType 7	: photo | 
 | 1046 | pilotAttributeType 8	:			: userClass | 
 | 1047 | pilotAttributeType 9	: host | 
 | 1048 | pilotAttributeType 10	: manager | 
 | 1049 | pilotAttributeType 11	:			: documentIdentifier | 
 | 1050 | pilotAttributeType 12	:			: documentTitle | 
 | 1051 | pilotAttributeType 13	:			: documentVersion | 
 | 1052 | pilotAttributeType 14	:			: documentAuthor | 
 | 1053 | pilotAttributeType 15	:			: documentLocation | 
 | 1054 | pilotAttributeType 20	:			: homeTelephoneNumber | 
 | 1055 | pilotAttributeType 21	: secretary | 
 | 1056 | pilotAttributeType 22	:			: otherMailbox | 
 | 1057 | pilotAttributeType 23	:			: lastModifiedTime | 
 | 1058 | pilotAttributeType 24	:			: lastModifiedBy | 
 | 1059 | pilotAttributeType 25	: DC			: domainComponent | 
 | 1060 | pilotAttributeType 26	:			: aRecord | 
 | 1061 | pilotAttributeType 27	:			: pilotAttributeType27 | 
 | 1062 | pilotAttributeType 28	:			: mXRecord | 
 | 1063 | pilotAttributeType 29	:			: nSRecord | 
 | 1064 | pilotAttributeType 30	:			: sOARecord | 
 | 1065 | pilotAttributeType 31	:			: cNAMERecord | 
 | 1066 | pilotAttributeType 37	:			: associatedDomain | 
 | 1067 | pilotAttributeType 38	:			: associatedName | 
 | 1068 | pilotAttributeType 39	:			: homePostalAddress | 
 | 1069 | pilotAttributeType 40	:			: personalTitle | 
 | 1070 | pilotAttributeType 41	:			: mobileTelephoneNumber | 
 | 1071 | pilotAttributeType 42	:			: pagerTelephoneNumber | 
 | 1072 | pilotAttributeType 43	:			: friendlyCountryName | 
 | 1073 | pilotAttributeType 44	: uid			: uniqueIdentifier | 
 | 1074 | pilotAttributeType 45	:			: organizationalStatus | 
 | 1075 | pilotAttributeType 46	:			: janetMailbox | 
 | 1076 | pilotAttributeType 47	:			: mailPreferenceOption | 
 | 1077 | pilotAttributeType 48	:			: buildingName | 
 | 1078 | pilotAttributeType 49	:			: dSAQuality | 
 | 1079 | pilotAttributeType 50	:			: singleLevelQuality | 
 | 1080 | pilotAttributeType 51	:			: subtreeMinimumQuality | 
 | 1081 | pilotAttributeType 52	:			: subtreeMaximumQuality | 
 | 1082 | pilotAttributeType 53	:			: personalSignature | 
 | 1083 | pilotAttributeType 54	:			: dITRedirect | 
 | 1084 | pilotAttributeType 55	: audio | 
 | 1085 | pilotAttributeType 56	:			: documentPublisher | 
 | 1086 |  | 
 | 1087 | international-organizations 42	: id-set	: Secure Electronic Transactions | 
 | 1088 |  | 
 | 1089 | id-set 0		: set-ctype		: content types | 
 | 1090 | id-set 1		: set-msgExt		: message extensions | 
 | 1091 | id-set 3		: set-attr | 
 | 1092 | id-set 5		: set-policy | 
 | 1093 | id-set 7		: set-certExt		: certificate extensions | 
 | 1094 | id-set 8		: set-brand | 
 | 1095 |  | 
 | 1096 | set-ctype 0		: setct-PANData | 
 | 1097 | set-ctype 1		: setct-PANToken | 
 | 1098 | set-ctype 2		: setct-PANOnly | 
 | 1099 | set-ctype 3		: setct-OIData | 
 | 1100 | set-ctype 4		: setct-PI | 
 | 1101 | set-ctype 5		: setct-PIData | 
 | 1102 | set-ctype 6		: setct-PIDataUnsigned | 
 | 1103 | set-ctype 7		: setct-HODInput | 
 | 1104 | set-ctype 8		: setct-AuthResBaggage | 
 | 1105 | set-ctype 9		: setct-AuthRevReqBaggage | 
 | 1106 | set-ctype 10		: setct-AuthRevResBaggage | 
 | 1107 | set-ctype 11		: setct-CapTokenSeq | 
 | 1108 | set-ctype 12		: setct-PInitResData | 
 | 1109 | set-ctype 13		: setct-PI-TBS | 
 | 1110 | set-ctype 14		: setct-PResData | 
 | 1111 | set-ctype 16		: setct-AuthReqTBS | 
 | 1112 | set-ctype 17		: setct-AuthResTBS | 
 | 1113 | set-ctype 18		: setct-AuthResTBSX | 
 | 1114 | set-ctype 19		: setct-AuthTokenTBS | 
 | 1115 | set-ctype 20		: setct-CapTokenData | 
 | 1116 | set-ctype 21		: setct-CapTokenTBS | 
 | 1117 | set-ctype 22		: setct-AcqCardCodeMsg | 
 | 1118 | set-ctype 23		: setct-AuthRevReqTBS | 
 | 1119 | set-ctype 24		: setct-AuthRevResData | 
 | 1120 | set-ctype 25		: setct-AuthRevResTBS | 
 | 1121 | set-ctype 26		: setct-CapReqTBS | 
 | 1122 | set-ctype 27		: setct-CapReqTBSX | 
 | 1123 | set-ctype 28		: setct-CapResData | 
 | 1124 | set-ctype 29		: setct-CapRevReqTBS | 
 | 1125 | set-ctype 30		: setct-CapRevReqTBSX | 
 | 1126 | set-ctype 31		: setct-CapRevResData | 
 | 1127 | set-ctype 32		: setct-CredReqTBS | 
 | 1128 | set-ctype 33		: setct-CredReqTBSX | 
 | 1129 | set-ctype 34		: setct-CredResData | 
 | 1130 | set-ctype 35		: setct-CredRevReqTBS | 
 | 1131 | set-ctype 36		: setct-CredRevReqTBSX | 
 | 1132 | set-ctype 37		: setct-CredRevResData | 
 | 1133 | set-ctype 38		: setct-PCertReqData | 
 | 1134 | set-ctype 39		: setct-PCertResTBS | 
 | 1135 | set-ctype 40		: setct-BatchAdminReqData | 
 | 1136 | set-ctype 41		: setct-BatchAdminResData | 
 | 1137 | set-ctype 42		: setct-CardCInitResTBS | 
 | 1138 | set-ctype 43		: setct-MeAqCInitResTBS | 
 | 1139 | set-ctype 44		: setct-RegFormResTBS | 
 | 1140 | set-ctype 45		: setct-CertReqData | 
 | 1141 | set-ctype 46		: setct-CertReqTBS | 
 | 1142 | set-ctype 47		: setct-CertResData | 
 | 1143 | set-ctype 48		: setct-CertInqReqTBS | 
 | 1144 | set-ctype 49		: setct-ErrorTBS | 
 | 1145 | set-ctype 50		: setct-PIDualSignedTBE | 
 | 1146 | set-ctype 51		: setct-PIUnsignedTBE | 
 | 1147 | set-ctype 52		: setct-AuthReqTBE | 
 | 1148 | set-ctype 53		: setct-AuthResTBE | 
 | 1149 | set-ctype 54		: setct-AuthResTBEX | 
 | 1150 | set-ctype 55		: setct-AuthTokenTBE | 
 | 1151 | set-ctype 56		: setct-CapTokenTBE | 
 | 1152 | set-ctype 57		: setct-CapTokenTBEX | 
 | 1153 | set-ctype 58		: setct-AcqCardCodeMsgTBE | 
 | 1154 | set-ctype 59		: setct-AuthRevReqTBE | 
 | 1155 | set-ctype 60		: setct-AuthRevResTBE | 
 | 1156 | set-ctype 61		: setct-AuthRevResTBEB | 
 | 1157 | set-ctype 62		: setct-CapReqTBE | 
 | 1158 | set-ctype 63		: setct-CapReqTBEX | 
 | 1159 | set-ctype 64		: setct-CapResTBE | 
 | 1160 | set-ctype 65		: setct-CapRevReqTBE | 
 | 1161 | set-ctype 66		: setct-CapRevReqTBEX | 
 | 1162 | set-ctype 67		: setct-CapRevResTBE | 
 | 1163 | set-ctype 68		: setct-CredReqTBE | 
 | 1164 | set-ctype 69		: setct-CredReqTBEX | 
 | 1165 | set-ctype 70		: setct-CredResTBE | 
 | 1166 | set-ctype 71		: setct-CredRevReqTBE | 
 | 1167 | set-ctype 72		: setct-CredRevReqTBEX | 
 | 1168 | set-ctype 73		: setct-CredRevResTBE | 
 | 1169 | set-ctype 74		: setct-BatchAdminReqTBE | 
 | 1170 | set-ctype 75		: setct-BatchAdminResTBE | 
 | 1171 | set-ctype 76		: setct-RegFormReqTBE | 
 | 1172 | set-ctype 77		: setct-CertReqTBE | 
 | 1173 | set-ctype 78		: setct-CertReqTBEX | 
 | 1174 | set-ctype 79		: setct-CertResTBE | 
 | 1175 | set-ctype 80		: setct-CRLNotificationTBS | 
 | 1176 | set-ctype 81		: setct-CRLNotificationResTBS | 
 | 1177 | set-ctype 82		: setct-BCIDistributionTBS | 
 | 1178 |  | 
 | 1179 | set-msgExt 1		: setext-genCrypt	: generic cryptogram | 
 | 1180 | set-msgExt 3		: setext-miAuth		: merchant initiated auth | 
 | 1181 | set-msgExt 4		: setext-pinSecure | 
 | 1182 | set-msgExt 5		: setext-pinAny | 
 | 1183 | set-msgExt 7		: setext-track2 | 
 | 1184 | set-msgExt 8		: setext-cv		: additional verification | 
 | 1185 |  | 
 | 1186 | set-policy 0		: set-policy-root | 
 | 1187 |  | 
 | 1188 | set-certExt 0		: setCext-hashedRoot | 
 | 1189 | set-certExt 1		: setCext-certType | 
 | 1190 | set-certExt 2		: setCext-merchData | 
 | 1191 | set-certExt 3		: setCext-cCertRequired | 
 | 1192 | set-certExt 4		: setCext-tunneling | 
 | 1193 | set-certExt 5		: setCext-setExt | 
 | 1194 | set-certExt 6		: setCext-setQualf | 
 | 1195 | set-certExt 7		: setCext-PGWYcapabilities | 
 | 1196 | set-certExt 8		: setCext-TokenIdentifier | 
 | 1197 | set-certExt 9		: setCext-Track2Data | 
 | 1198 | set-certExt 10		: setCext-TokenType | 
 | 1199 | set-certExt 11		: setCext-IssuerCapabilities | 
 | 1200 |  | 
 | 1201 | set-attr 0		: setAttr-Cert | 
 | 1202 | set-attr 1		: setAttr-PGWYcap	: payment gateway capabilities | 
 | 1203 | set-attr 2		: setAttr-TokenType | 
 | 1204 | set-attr 3		: setAttr-IssCap	: issuer capabilities | 
 | 1205 |  | 
 | 1206 | setAttr-Cert 0		: set-rootKeyThumb | 
 | 1207 | setAttr-Cert 1		: set-addPolicy | 
 | 1208 |  | 
 | 1209 | setAttr-TokenType 1	: setAttr-Token-EMV | 
 | 1210 | setAttr-TokenType 2	: setAttr-Token-B0Prime | 
 | 1211 |  | 
 | 1212 | setAttr-IssCap 3	: setAttr-IssCap-CVM | 
 | 1213 | setAttr-IssCap 4	: setAttr-IssCap-T2 | 
 | 1214 | setAttr-IssCap 5	: setAttr-IssCap-Sig | 
 | 1215 |  | 
 | 1216 | setAttr-IssCap-CVM 1	: setAttr-GenCryptgrm	: generate cryptogram | 
 | 1217 | setAttr-IssCap-T2 1	: setAttr-T2Enc		: encrypted track 2 | 
 | 1218 | setAttr-IssCap-T2 2	: setAttr-T2cleartxt	: cleartext track 2 | 
 | 1219 |  | 
 | 1220 | setAttr-IssCap-Sig 1	: setAttr-TokICCsig	: ICC or token signature | 
 | 1221 | setAttr-IssCap-Sig 2	: setAttr-SecDevSig	: secure device signature | 
 | 1222 |  | 
 | 1223 | set-brand 1		: set-brand-IATA-ATA | 
 | 1224 | set-brand 30		: set-brand-Diners | 
 | 1225 | set-brand 34		: set-brand-AmericanExpress | 
 | 1226 | set-brand 35		: set-brand-JCB | 
 | 1227 | set-brand 4		: set-brand-Visa | 
 | 1228 | set-brand 5		: set-brand-MasterCard | 
 | 1229 | set-brand 6011		: set-brand-Novus | 
 | 1230 |  | 
 | 1231 | rsadsi 3 10		: DES-CDMF		: des-cdmf | 
 | 1232 | rsadsi 1 1 6		: rsaOAEPEncryptionSET | 
 | 1233 |  | 
 | 1234 | 			: Oakley-EC2N-3		: ipsec3 | 
 | 1235 | 			: Oakley-EC2N-4		: ipsec4 | 
 | 1236 |  | 
 | 1237 | iso 0 10118 3 0 55	: whirlpool | 
 | 1238 |  | 
 | 1239 | # GOST OIDs | 
 | 1240 |  | 
 | 1241 | member-body 643 2 2	: cryptopro | 
 | 1242 | member-body 643 2 9	: cryptocom | 
 | 1243 | member-body 643 7 1	: id-tc26 | 
 | 1244 |  | 
 | 1245 | cryptopro 3		: id-GostR3411-94-with-GostR3410-2001 : GOST R 34.11-94 with GOST R 34.10-2001 | 
 | 1246 | cryptopro 4		: id-GostR3411-94-with-GostR3410-94 : GOST R 34.11-94 with GOST R 34.10-94 | 
 | 1247 | !Cname id-GostR3411-94 | 
 | 1248 | cryptopro 9		: md_gost94		: GOST R 34.11-94 | 
 | 1249 | cryptopro 10		: id-HMACGostR3411-94	: HMAC GOST 34.11-94 | 
 | 1250 | !Cname id-GostR3410-2001 | 
 | 1251 | cryptopro 19		: gost2001	: GOST R 34.10-2001 | 
 | 1252 | !Cname id-GostR3410-94 | 
 | 1253 | cryptopro 20		: gost94	: GOST R 34.10-94 | 
 | 1254 | !Cname id-Gost28147-89 | 
 | 1255 | cryptopro 21		: gost89 		: GOST 28147-89 | 
 | 1256 | 			: gost89-cnt | 
 | 1257 | 			: gost89-cnt-12 | 
 | 1258 | 			: gost89-cbc | 
 | 1259 | 			: gost89-ecb | 
 | 1260 | 			: gost89-ctr | 
 | 1261 | !Cname id-Gost28147-89-MAC | 
 | 1262 | cryptopro 22		: gost-mac	: GOST 28147-89 MAC | 
 | 1263 | 			: gost-mac-12 | 
 | 1264 | !Cname id-GostR3411-94-prf | 
 | 1265 | cryptopro 23		: prf-gostr3411-94	: GOST R 34.11-94 PRF | 
 | 1266 | cryptopro 98		: id-GostR3410-2001DH	: GOST R 34.10-2001 DH | 
 | 1267 | cryptopro 99		: id-GostR3410-94DH	: GOST R 34.10-94 DH | 
 | 1268 |  | 
 | 1269 | cryptopro 14 1		: id-Gost28147-89-CryptoPro-KeyMeshing | 
 | 1270 | cryptopro 14 0		: id-Gost28147-89-None-KeyMeshing | 
 | 1271 |  | 
 | 1272 | # GOST parameter set OIDs | 
 | 1273 |  | 
 | 1274 | cryptopro 30 0		: id-GostR3411-94-TestParamSet | 
 | 1275 | cryptopro 30 1		: id-GostR3411-94-CryptoProParamSet | 
 | 1276 |  | 
 | 1277 | cryptopro 31 0		: id-Gost28147-89-TestParamSet | 
 | 1278 | cryptopro 31 1		: id-Gost28147-89-CryptoPro-A-ParamSet | 
 | 1279 | cryptopro 31 2		: id-Gost28147-89-CryptoPro-B-ParamSet | 
 | 1280 | cryptopro 31 3		: id-Gost28147-89-CryptoPro-C-ParamSet | 
 | 1281 | cryptopro 31 4		: id-Gost28147-89-CryptoPro-D-ParamSet | 
 | 1282 | cryptopro 31 5		: id-Gost28147-89-CryptoPro-Oscar-1-1-ParamSet | 
 | 1283 | cryptopro 31 6		: id-Gost28147-89-CryptoPro-Oscar-1-0-ParamSet | 
 | 1284 | cryptopro 31 7		: id-Gost28147-89-CryptoPro-RIC-1-ParamSet | 
 | 1285 |  | 
 | 1286 | cryptopro 32 0		: id-GostR3410-94-TestParamSet | 
 | 1287 | cryptopro 32 2		: id-GostR3410-94-CryptoPro-A-ParamSet | 
 | 1288 | cryptopro 32 3		: id-GostR3410-94-CryptoPro-B-ParamSet | 
 | 1289 | cryptopro 32 4		: id-GostR3410-94-CryptoPro-C-ParamSet | 
 | 1290 | cryptopro 32 5		: id-GostR3410-94-CryptoPro-D-ParamSet | 
 | 1291 |  | 
 | 1292 | cryptopro 33 1		: id-GostR3410-94-CryptoPro-XchA-ParamSet | 
 | 1293 | cryptopro 33 2		: id-GostR3410-94-CryptoPro-XchB-ParamSet | 
 | 1294 | cryptopro 33 3		: id-GostR3410-94-CryptoPro-XchC-ParamSet | 
 | 1295 |  | 
 | 1296 | cryptopro 35 0		: id-GostR3410-2001-TestParamSet | 
 | 1297 | cryptopro 35 1		: id-GostR3410-2001-CryptoPro-A-ParamSet | 
 | 1298 | cryptopro 35 2		: id-GostR3410-2001-CryptoPro-B-ParamSet | 
 | 1299 | cryptopro 35 3		: id-GostR3410-2001-CryptoPro-C-ParamSet | 
 | 1300 |  | 
 | 1301 | cryptopro 36 0		: id-GostR3410-2001-CryptoPro-XchA-ParamSet | 
 | 1302 | cryptopro 36 1		: id-GostR3410-2001-CryptoPro-XchB-ParamSet | 
 | 1303 |  | 
 | 1304 | id-GostR3410-94 1	: id-GostR3410-94-a | 
 | 1305 | id-GostR3410-94 2	: id-GostR3410-94-aBis | 
 | 1306 | id-GostR3410-94 3	: id-GostR3410-94-b | 
 | 1307 | id-GostR3410-94 4	: id-GostR3410-94-bBis | 
 | 1308 |  | 
 | 1309 | # Cryptocom LTD GOST OIDs | 
 | 1310 |  | 
 | 1311 | cryptocom 1 6 1		: id-Gost28147-89-cc	: GOST 28147-89 Cryptocom ParamSet | 
 | 1312 | !Cname id-GostR3410-94-cc | 
 | 1313 | cryptocom 1 5 3		: gost94cc	: GOST 34.10-94 Cryptocom | 
 | 1314 | !Cname id-GostR3410-2001-cc | 
 | 1315 | cryptocom 1 5 4		: gost2001cc	: GOST 34.10-2001 Cryptocom | 
 | 1316 |  | 
 | 1317 | cryptocom 1 3 3		: id-GostR3411-94-with-GostR3410-94-cc : GOST R 34.11-94 with GOST R 34.10-94 Cryptocom | 
 | 1318 | cryptocom 1 3 4		: id-GostR3411-94-with-GostR3410-2001-cc : GOST R 34.11-94 with GOST R 34.10-2001 Cryptocom | 
 | 1319 |  | 
 | 1320 | cryptocom 1 8 1		: id-GostR3410-2001-ParamSet-cc : GOST R 3410-2001 Parameter Set Cryptocom | 
 | 1321 |  | 
 | 1322 | # TC26 GOST OIDs | 
 | 1323 |  | 
 | 1324 | id-tc26 1 		: id-tc26-algorithms | 
 | 1325 | id-tc26-algorithms 1	: id-tc26-sign | 
 | 1326 | !Cname id-GostR3410-2012-256 | 
 | 1327 | id-tc26-sign 1		: gost2012_256: GOST R 34.10-2012 with 256 bit modulus | 
 | 1328 | !Cname id-GostR3410-2012-512 | 
 | 1329 | id-tc26-sign 2		: gost2012_512: GOST R 34.10-2012 with 512 bit modulus | 
 | 1330 |  | 
 | 1331 | id-tc26-algorithms 2	: id-tc26-digest | 
 | 1332 | !Cname id-GostR3411-2012-256 | 
 | 1333 | id-tc26-digest 2	: md_gost12_256: GOST R 34.11-2012 with 256 bit hash | 
 | 1334 | !Cname id-GostR3411-2012-512 | 
 | 1335 | id-tc26-digest 3	: md_gost12_512: GOST R 34.11-2012 with 512 bit hash | 
 | 1336 |  | 
 | 1337 | id-tc26-algorithms 3	: id-tc26-signwithdigest | 
 | 1338 | id-tc26-signwithdigest 2: id-tc26-signwithdigest-gost3410-2012-256: GOST R 34.10-2012 with GOST R 34.11-2012 (256 bit) | 
 | 1339 | id-tc26-signwithdigest 3: id-tc26-signwithdigest-gost3410-2012-512: GOST R 34.10-2012 with GOST R 34.11-2012 (512 bit) | 
 | 1340 |  | 
 | 1341 | id-tc26-algorithms 4	: id-tc26-mac | 
 | 1342 | id-tc26-mac 1		: id-tc26-hmac-gost-3411-2012-256 : HMAC GOST 34.11-2012 256 bit | 
 | 1343 | id-tc26-mac 2		: id-tc26-hmac-gost-3411-2012-512 : HMAC GOST 34.11-2012 512 bit | 
 | 1344 |  | 
 | 1345 | id-tc26-algorithms 5	: id-tc26-cipher | 
 | 1346 | id-tc26-cipher 1	:  id-tc26-cipher-gostr3412-2015-magma | 
 | 1347 | id-tc26-cipher-gostr3412-2015-magma 1	: id-tc26-cipher-gostr3412-2015-magma-ctracpkm | 
 | 1348 | id-tc26-cipher-gostr3412-2015-magma 2	: id-tc26-cipher-gostr3412-2015-magma-ctracpkm-omac | 
 | 1349 | id-tc26-cipher 2	:  id-tc26-cipher-gostr3412-2015-kuznyechik | 
 | 1350 | id-tc26-cipher-gostr3412-2015-kuznyechik 1	: id-tc26-cipher-gostr3412-2015-kuznyechik-ctracpkm | 
 | 1351 | id-tc26-cipher-gostr3412-2015-kuznyechik 2	: id-tc26-cipher-gostr3412-2015-kuznyechik-ctracpkm-omac | 
 | 1352 |  | 
 | 1353 | id-tc26-algorithms 6	: id-tc26-agreement | 
 | 1354 | id-tc26-agreement 1	: id-tc26-agreement-gost-3410-2012-256 | 
 | 1355 | id-tc26-agreement 2	: id-tc26-agreement-gost-3410-2012-512 | 
 | 1356 |  | 
 | 1357 | id-tc26-algorithms 7	:	id-tc26-wrap | 
 | 1358 | id-tc26-wrap 1	: id-tc26-wrap-gostr3412-2015-magma | 
 | 1359 | id-tc26-wrap-gostr3412-2015-magma 1	: id-tc26-wrap-gostr3412-2015-magma-kexp15 | 
 | 1360 | id-tc26-wrap 2	: id-tc26-wrap-gostr3412-2015-kuznyechik | 
 | 1361 | id-tc26-wrap-gostr3412-2015-kuznyechik 1	: id-tc26-wrap-gostr3412-2015-kuznyechik-kexp15 | 
 | 1362 |  | 
 | 1363 | id-tc26 2 		: id-tc26-constants | 
 | 1364 |  | 
 | 1365 | id-tc26-constants 1	: id-tc26-sign-constants | 
 | 1366 | id-tc26-sign-constants 1: id-tc26-gost-3410-2012-256-constants | 
 | 1367 | id-tc26-gost-3410-2012-256-constants 1	: id-tc26-gost-3410-2012-256-paramSetA: GOST R 34.10-2012 (256 bit) ParamSet A | 
 | 1368 | id-tc26-gost-3410-2012-256-constants 2	: id-tc26-gost-3410-2012-256-paramSetB: GOST R 34.10-2012 (256 bit) ParamSet B | 
 | 1369 | id-tc26-gost-3410-2012-256-constants 3	: id-tc26-gost-3410-2012-256-paramSetC: GOST R 34.10-2012 (256 bit) ParamSet C | 
 | 1370 | id-tc26-gost-3410-2012-256-constants 4	: id-tc26-gost-3410-2012-256-paramSetD: GOST R 34.10-2012 (256 bit) ParamSet D | 
 | 1371 | id-tc26-sign-constants 2: id-tc26-gost-3410-2012-512-constants | 
 | 1372 | id-tc26-gost-3410-2012-512-constants 0	: id-tc26-gost-3410-2012-512-paramSetTest: GOST R 34.10-2012 (512 bit) testing parameter set | 
 | 1373 | id-tc26-gost-3410-2012-512-constants 1	: id-tc26-gost-3410-2012-512-paramSetA: GOST R 34.10-2012 (512 bit) ParamSet A | 
 | 1374 | id-tc26-gost-3410-2012-512-constants 2	: id-tc26-gost-3410-2012-512-paramSetB: GOST R 34.10-2012 (512 bit) ParamSet B | 
 | 1375 | id-tc26-gost-3410-2012-512-constants 3	: id-tc26-gost-3410-2012-512-paramSetC: GOST R 34.10-2012 (512 bit) ParamSet C | 
 | 1376 |  | 
 | 1377 | id-tc26-constants 2     : id-tc26-digest-constants | 
 | 1378 | id-tc26-constants 5     : id-tc26-cipher-constants | 
 | 1379 | id-tc26-cipher-constants 1	: id-tc26-gost-28147-constants | 
 | 1380 | id-tc26-gost-28147-constants 1	: id-tc26-gost-28147-param-Z : GOST 28147-89 TC26 parameter set | 
 | 1381 |  | 
 | 1382 | member-body 643 3 131 1 1	: INN	: INN | 
 | 1383 | member-body 643 100 1		: OGRN	: OGRN | 
 | 1384 | member-body 643 100 3		: SNILS	: SNILS | 
 | 1385 | member-body 643 100 111	: subjectSignTool	: Signing Tool of Subject | 
 | 1386 | member-body 643 100 112	: issuerSignTool	: Signing Tool of Issuer | 
 | 1387 |  | 
 | 1388 | #GOST R34.13-2015 Grasshopper "Kuznechik" | 
 | 1389 | 			: grasshopper-ecb | 
 | 1390 | 			: grasshopper-ctr | 
 | 1391 | 			: grasshopper-ofb | 
 | 1392 | 			: grasshopper-cbc | 
 | 1393 | 			: grasshopper-cfb | 
 | 1394 | 			: grasshopper-mac | 
 | 1395 |  | 
 | 1396 | #GOST R34.13-2015 Magma | 
 | 1397 | 			: magma-ecb | 
 | 1398 | 			: magma-ctr | 
 | 1399 | 			: magma-ofb | 
 | 1400 | 			: magma-cbc | 
 | 1401 | 			: magma-cfb | 
 | 1402 | 			: magma-mac | 
 | 1403 |  | 
 | 1404 | # Definitions for Camellia cipher - CBC MODE | 
 | 1405 |  | 
 | 1406 | 1 2 392 200011 61 1 1 1 2 : CAMELLIA-128-CBC		: camellia-128-cbc | 
 | 1407 | 1 2 392 200011 61 1 1 1 3 : CAMELLIA-192-CBC		: camellia-192-cbc | 
 | 1408 | 1 2 392 200011 61 1 1 1 4 : CAMELLIA-256-CBC		: camellia-256-cbc | 
 | 1409 | 1 2 392 200011 61 1 1 3 2 : id-camellia128-wrap | 
 | 1410 | 1 2 392 200011 61 1 1 3 3 : id-camellia192-wrap | 
 | 1411 | 1 2 392 200011 61 1 1 3 4 : id-camellia256-wrap | 
 | 1412 |  | 
 | 1413 | # Definitions for Camellia cipher - ECB, CFB, OFB MODE | 
 | 1414 |  | 
 | 1415 | !Alias ntt-ds 0 3 4401 5 | 
 | 1416 | !Alias camellia ntt-ds 3 1 9 | 
 | 1417 |  | 
 | 1418 | camellia 1		: CAMELLIA-128-ECB		: camellia-128-ecb | 
 | 1419 | !Cname camellia-128-ofb128 | 
 | 1420 | camellia 3		: CAMELLIA-128-OFB		: camellia-128-ofb | 
 | 1421 | !Cname camellia-128-cfb128 | 
 | 1422 | camellia 4		: CAMELLIA-128-CFB		: camellia-128-cfb | 
 | 1423 | camellia 6		: CAMELLIA-128-GCM		: camellia-128-gcm | 
 | 1424 | camellia 7		: CAMELLIA-128-CCM		: camellia-128-ccm | 
 | 1425 | camellia 9		: CAMELLIA-128-CTR		: camellia-128-ctr | 
 | 1426 | camellia 10		: CAMELLIA-128-CMAC		: camellia-128-cmac | 
 | 1427 |  | 
 | 1428 | camellia 21		: CAMELLIA-192-ECB		: camellia-192-ecb | 
 | 1429 | !Cname camellia-192-ofb128 | 
 | 1430 | camellia 23		: CAMELLIA-192-OFB		: camellia-192-ofb | 
 | 1431 | !Cname camellia-192-cfb128 | 
 | 1432 | camellia 24		: CAMELLIA-192-CFB		: camellia-192-cfb | 
 | 1433 | camellia 26		: CAMELLIA-192-GCM		: camellia-192-gcm | 
 | 1434 | camellia 27		: CAMELLIA-192-CCM		: camellia-192-ccm | 
 | 1435 | camellia 29		: CAMELLIA-192-CTR		: camellia-192-ctr | 
 | 1436 | camellia 30		: CAMELLIA-192-CMAC		: camellia-192-cmac | 
 | 1437 |  | 
 | 1438 | camellia 41		: CAMELLIA-256-ECB		: camellia-256-ecb | 
 | 1439 | !Cname camellia-256-ofb128 | 
 | 1440 | camellia 43		: CAMELLIA-256-OFB		: camellia-256-ofb | 
 | 1441 | !Cname camellia-256-cfb128 | 
 | 1442 | camellia 44		: CAMELLIA-256-CFB		: camellia-256-cfb | 
 | 1443 | camellia 46		: CAMELLIA-256-GCM		: camellia-256-gcm | 
 | 1444 | camellia 47		: CAMELLIA-256-CCM		: camellia-256-ccm | 
 | 1445 | camellia 49		: CAMELLIA-256-CTR		: camellia-256-ctr | 
 | 1446 | camellia 50		: CAMELLIA-256-CMAC		: camellia-256-cmac | 
 | 1447 |  | 
 | 1448 | # There are no OIDs for these modes... | 
 | 1449 |  | 
 | 1450 | 			: CAMELLIA-128-CFB1		: camellia-128-cfb1 | 
 | 1451 | 			: CAMELLIA-192-CFB1		: camellia-192-cfb1 | 
 | 1452 | 			: CAMELLIA-256-CFB1		: camellia-256-cfb1 | 
 | 1453 | 			: CAMELLIA-128-CFB8		: camellia-128-cfb8 | 
 | 1454 | 			: CAMELLIA-192-CFB8		: camellia-192-cfb8 | 
 | 1455 | 			: CAMELLIA-256-CFB8		: camellia-256-cfb8 | 
 | 1456 |  | 
 | 1457 | # Definitions for ARIA cipher | 
 | 1458 |  | 
 | 1459 | !Alias aria 1 2 410 200046 1 1 | 
 | 1460 | aria 1                  : ARIA-128-ECB                  : aria-128-ecb | 
 | 1461 | aria 2                  : ARIA-128-CBC                  : aria-128-cbc | 
 | 1462 | !Cname aria-128-cfb128 | 
 | 1463 | aria 3                  : ARIA-128-CFB                  : aria-128-cfb | 
 | 1464 | !Cname aria-128-ofb128 | 
 | 1465 | aria 4                  : ARIA-128-OFB                  : aria-128-ofb | 
 | 1466 | aria 5			: ARIA-128-CTR                  : aria-128-ctr | 
 | 1467 |  | 
 | 1468 | aria 6                  : ARIA-192-ECB                  : aria-192-ecb | 
 | 1469 | aria 7                  : ARIA-192-CBC                  : aria-192-cbc | 
 | 1470 | !Cname aria-192-cfb128 | 
 | 1471 | aria 8                  : ARIA-192-CFB                  : aria-192-cfb | 
 | 1472 | !Cname aria-192-ofb128 | 
 | 1473 | aria 9                  : ARIA-192-OFB                  : aria-192-ofb | 
 | 1474 | aria 10                 : ARIA-192-CTR                  : aria-192-ctr | 
 | 1475 |  | 
 | 1476 | aria 11                 : ARIA-256-ECB                  : aria-256-ecb | 
 | 1477 | aria 12                 : ARIA-256-CBC                  : aria-256-cbc | 
 | 1478 | !Cname aria-256-cfb128 | 
 | 1479 | aria 13                 : ARIA-256-CFB                  : aria-256-cfb | 
 | 1480 | !Cname aria-256-ofb128 | 
 | 1481 | aria 14                 : ARIA-256-OFB                  : aria-256-ofb | 
 | 1482 | aria 15                 : ARIA-256-CTR                  : aria-256-ctr | 
 | 1483 |  | 
 | 1484 | # There are no OIDs for these ARIA modes... | 
 | 1485 |                         : ARIA-128-CFB1                 : aria-128-cfb1 | 
 | 1486 |                         : ARIA-192-CFB1                 : aria-192-cfb1 | 
 | 1487 |                         : ARIA-256-CFB1                 : aria-256-cfb1 | 
 | 1488 |                         : ARIA-128-CFB8                 : aria-128-cfb8 | 
 | 1489 |                         : ARIA-192-CFB8                 : aria-192-cfb8 | 
 | 1490 |                         : ARIA-256-CFB8                 : aria-256-cfb8 | 
 | 1491 |  | 
 | 1492 | aria 37                 : ARIA-128-CCM                  : aria-128-ccm | 
 | 1493 | aria 38                 : ARIA-192-CCM                  : aria-192-ccm | 
 | 1494 | aria 39                 : ARIA-256-CCM                  : aria-256-ccm | 
 | 1495 | aria 34                 : ARIA-128-GCM                  : aria-128-gcm | 
 | 1496 | aria 35                 : ARIA-192-GCM                  : aria-192-gcm | 
 | 1497 | aria 36                 : ARIA-256-GCM                  : aria-256-gcm | 
 | 1498 |  | 
 | 1499 | # Definitions for SEED cipher - ECB, CBC, OFB mode | 
 | 1500 |  | 
 | 1501 | member-body 410 200004  : KISA          : kisa | 
 | 1502 | kisa 1 3                : SEED-ECB      : seed-ecb | 
 | 1503 | kisa 1 4                : SEED-CBC      : seed-cbc | 
 | 1504 | !Cname seed-cfb128 | 
 | 1505 | kisa 1 5                : SEED-CFB      : seed-cfb | 
 | 1506 | !Cname seed-ofb128 | 
 | 1507 | kisa 1 6                : SEED-OFB      : seed-ofb | 
 | 1508 |  | 
 | 1509 |  | 
 | 1510 | # Definitions for SM4 cipher | 
 | 1511 |  | 
 | 1512 | sm-scheme 104 1         : SM4-ECB             : sm4-ecb | 
 | 1513 | sm-scheme 104 2         : SM4-CBC             : sm4-cbc | 
 | 1514 | !Cname sm4-ofb128 | 
 | 1515 | sm-scheme 104 3         : SM4-OFB             : sm4-ofb | 
 | 1516 | !Cname sm4-cfb128 | 
 | 1517 | sm-scheme 104 4         : SM4-CFB             : sm4-cfb | 
 | 1518 | sm-scheme 104 5         : SM4-CFB1            : sm4-cfb1 | 
 | 1519 | sm-scheme 104 6         : SM4-CFB8            : sm4-cfb8 | 
 | 1520 | sm-scheme 104 7         : SM4-CTR             : sm4-ctr | 
 | 1521 |  | 
 | 1522 | # There is no OID that just denotes "HMAC" oddly enough... | 
 | 1523 |  | 
 | 1524 | 			: HMAC				: hmac | 
 | 1525 | # Nor CMAC either | 
 | 1526 | 			: CMAC				: cmac | 
 | 1527 |  | 
 | 1528 | # Synthetic composite ciphersuites | 
 | 1529 | 			: RC4-HMAC-MD5			: rc4-hmac-md5 | 
 | 1530 | 			: AES-128-CBC-HMAC-SHA1		: aes-128-cbc-hmac-sha1 | 
 | 1531 | 			: AES-192-CBC-HMAC-SHA1		: aes-192-cbc-hmac-sha1 | 
 | 1532 | 			: AES-256-CBC-HMAC-SHA1		: aes-256-cbc-hmac-sha1 | 
 | 1533 | 			: AES-128-CBC-HMAC-SHA256	: aes-128-cbc-hmac-sha256 | 
 | 1534 | 			: AES-192-CBC-HMAC-SHA256	: aes-192-cbc-hmac-sha256 | 
 | 1535 | 			: AES-256-CBC-HMAC-SHA256	: aes-256-cbc-hmac-sha256 | 
 | 1536 | 			: ChaCha20-Poly1305		: chacha20-poly1305 | 
 | 1537 | 			: ChaCha20			: chacha20 | 
 | 1538 |  | 
 | 1539 | ISO-US 10046 2 1	: dhpublicnumber		: X9.42 DH | 
 | 1540 |  | 
 | 1541 | # RFC 5639 curve OIDs (see http://www.ietf.org/rfc/rfc5639.txt) | 
 | 1542 | # versionOne OBJECT IDENTIFIER ::= { | 
 | 1543 | # iso(1) identified-organization(3) teletrust(36) algorithm(3) | 
 | 1544 | # signature-algorithm(3) ecSign(2) ecStdCurvesAndGeneration(8) | 
 | 1545 | # ellipticCurve(1) 1 } | 
 | 1546 | 1 3 36 3 3 2 8 1 1 1 : brainpoolP160r1 | 
 | 1547 | 1 3 36 3 3 2 8 1 1 2 : brainpoolP160t1 | 
 | 1548 | 1 3 36 3 3 2 8 1 1 3 : brainpoolP192r1 | 
 | 1549 | 1 3 36 3 3 2 8 1 1 4 : brainpoolP192t1 | 
 | 1550 | 1 3 36 3 3 2 8 1 1 5 : brainpoolP224r1 | 
 | 1551 | 1 3 36 3 3 2 8 1 1 6 : brainpoolP224t1 | 
 | 1552 | 1 3 36 3 3 2 8 1 1 7 : brainpoolP256r1 | 
 | 1553 | 1 3 36 3 3 2 8 1 1 8 : brainpoolP256t1 | 
 | 1554 | 1 3 36 3 3 2 8 1 1 9 : brainpoolP320r1 | 
 | 1555 | 1 3 36 3 3 2 8 1 1 10 : brainpoolP320t1 | 
 | 1556 | 1 3 36 3 3 2 8 1 1 11 : brainpoolP384r1 | 
 | 1557 | 1 3 36 3 3 2 8 1 1 12 : brainpoolP384t1 | 
 | 1558 | 1 3 36 3 3 2 8 1 1 13 : brainpoolP512r1 | 
 | 1559 | 1 3 36 3 3 2 8 1 1 14 : brainpoolP512t1 | 
 | 1560 |  | 
 | 1561 | # ECDH schemes from RFC5753 | 
 | 1562 | !Alias x9-63-scheme 1 3 133 16 840 63 0 | 
 | 1563 | !Alias secg-scheme certicom-arc 1 | 
 | 1564 |  | 
 | 1565 | x9-63-scheme 2   : dhSinglePass-stdDH-sha1kdf-scheme | 
 | 1566 | secg-scheme 11 0 : dhSinglePass-stdDH-sha224kdf-scheme | 
 | 1567 | secg-scheme 11 1 : dhSinglePass-stdDH-sha256kdf-scheme | 
 | 1568 | secg-scheme 11 2 : dhSinglePass-stdDH-sha384kdf-scheme | 
 | 1569 | secg-scheme 11 3 : dhSinglePass-stdDH-sha512kdf-scheme | 
 | 1570 |  | 
 | 1571 | x9-63-scheme 3   : dhSinglePass-cofactorDH-sha1kdf-scheme | 
 | 1572 | secg-scheme 14 0 : dhSinglePass-cofactorDH-sha224kdf-scheme | 
 | 1573 | secg-scheme 14 1 : dhSinglePass-cofactorDH-sha256kdf-scheme | 
 | 1574 | secg-scheme 14 2 : dhSinglePass-cofactorDH-sha384kdf-scheme | 
 | 1575 | secg-scheme 14 3 : dhSinglePass-cofactorDH-sha512kdf-scheme | 
 | 1576 | # NIDs for use with lookup tables. | 
 | 1577 |                  : dh-std-kdf | 
 | 1578 |                  : dh-cofactor-kdf | 
 | 1579 |  | 
 | 1580 | # RFC 6962 Extension OIDs (see http://www.ietf.org/rfc/rfc6962.txt) | 
 | 1581 | 1 3 6 1 4 1 11129 2 4 2	: ct_precert_scts		: CT Precertificate SCTs | 
 | 1582 | 1 3 6 1 4 1 11129 2 4 3	: ct_precert_poison		: CT Precertificate Poison | 
 | 1583 | 1 3 6 1 4 1 11129 2 4 4	: ct_precert_signer		: CT Precertificate Signer | 
 | 1584 | 1 3 6 1 4 1 11129 2 4 5	: ct_cert_scts			: CT Certificate SCTs | 
 | 1585 |  | 
 | 1586 | # CABForum EV SSL Certificate Guidelines | 
 | 1587 | # (see https://cabforum.org/extended-validation/) | 
 | 1588 | # OIDs for Subject Jurisdiction of Incorporation or Registration | 
 | 1589 | 1 3 6 1 4 1 311 60 2 1 1	: jurisdictionL		: jurisdictionLocalityName | 
 | 1590 | 1 3 6 1 4 1 311 60 2 1 2	: jurisdictionST	: jurisdictionStateOrProvinceName | 
 | 1591 | 1 3 6 1 4 1 311 60 2 1 3	: jurisdictionC		: jurisdictionCountryName | 
 | 1592 |  | 
 | 1593 | # SCRYPT algorithm | 
 | 1594 | !Cname id-scrypt | 
 | 1595 | 1 3 6 1 4 1 11591 4 11		: id-scrypt         : scrypt | 
 | 1596 |  | 
 | 1597 | # NID for TLS1 PRF | 
 | 1598 |                             : TLS1-PRF          : tls1-prf | 
 | 1599 |  | 
 | 1600 | # NID for HKDF | 
 | 1601 |                             : HKDF              : hkdf | 
 | 1602 |  | 
 | 1603 | # RFC 4556 | 
 | 1604 | 1 3 6 1 5 2 3 : id-pkinit | 
 | 1605 | id-pkinit 4                     : pkInitClientAuth      : PKINIT Client Auth | 
 | 1606 | id-pkinit 5                     : pkInitKDC             : Signing KDC Response | 
 | 1607 |  | 
 | 1608 | # From RFC8410 | 
 | 1609 | 1 3 101 110 : X25519 | 
 | 1610 | 1 3 101 111 : X448 | 
 | 1611 | 1 3 101 112 : ED25519 | 
 | 1612 | 1 3 101 113 : ED448 | 
 | 1613 |  | 
 | 1614 |  | 
 | 1615 | # NIDs for cipher key exchange | 
 | 1616 |                             : KxRSA        : kx-rsa | 
 | 1617 |                             : KxECDHE      : kx-ecdhe | 
 | 1618 |                             : KxDHE        : kx-dhe | 
 | 1619 |                             : KxECDHE-PSK  : kx-ecdhe-psk | 
 | 1620 |                             : KxDHE-PSK    : kx-dhe-psk | 
 | 1621 |                             : KxRSA_PSK    : kx-rsa-psk | 
 | 1622 |                             : KxPSK        : kx-psk | 
 | 1623 |                             : KxSRP        : kx-srp | 
 | 1624 |                             : KxGOST       : kx-gost | 
 | 1625 |                             : KxANY        : kx-any | 
 | 1626 |  | 
 | 1627 | # NIDs for cipher authentication | 
 | 1628 |                             : AuthRSA      : auth-rsa | 
 | 1629 |                             : AuthECDSA    : auth-ecdsa | 
 | 1630 |                             : AuthPSK      : auth-psk | 
 | 1631 |                             : AuthDSS      : auth-dss | 
 | 1632 |                             : AuthGOST01   : auth-gost01 | 
 | 1633 |                             : AuthGOST12   : auth-gost12 | 
 | 1634 |                             : AuthSRP      : auth-srp | 
 | 1635 |                             : AuthNULL     : auth-null | 
 | 1636 |                             : AuthANY      : auth-any | 
 | 1637 | # NID for Poly1305 | 
 | 1638 |                             : Poly1305     : poly1305 | 
 | 1639 | # NID for SipHash | 
 | 1640 |                             : SipHash      : siphash | 
 | 1641 |  | 
 | 1642 | # NIDs for RFC7919 DH parameters | 
 | 1643 |                             : ffdhe2048 | 
 | 1644 |                             : ffdhe3072 | 
 | 1645 |                             : ffdhe4096 | 
 | 1646 |                             : ffdhe6144 | 
 | 1647 |                             : ffdhe8192 | 
 | 1648 |  | 
 | 1649 | # OIDs for DSTU-4145/DSTU-7564 (http://zakon2.rada.gov.ua/laws/show/z0423-17) | 
 | 1650 |  | 
 | 1651 | # DSTU OIDs | 
 | 1652 | member-body 804   : ISO-UA | 
 | 1653 | ISO-UA 2 1 1 1    : ua-pki | 
 | 1654 | ua-pki 1 1 1      : dstu28147         : DSTU Gost 28147-2009 | 
 | 1655 | dstu28147 2       : dstu28147-ofb     : DSTU Gost 28147-2009 OFB mode | 
 | 1656 | dstu28147 3       : dstu28147-cfb     : DSTU Gost 28147-2009 CFB mode | 
 | 1657 | dstu28147 5       : dstu28147-wrap    : DSTU Gost 28147-2009 key wrap | 
 | 1658 |  | 
 | 1659 | ua-pki 1 1 2      : hmacWithDstu34311 : HMAC DSTU Gost 34311-95 | 
 | 1660 | ua-pki 1 2 1      : dstu34311         : DSTU Gost 34311-95 | 
 | 1661 |  | 
 | 1662 | ua-pki 1 3 1 1    : dstu4145le        : DSTU 4145-2002 little endian | 
 | 1663 | dstu4145le 1 1    : dstu4145be        : DSTU 4145-2002 big endian | 
 | 1664 |  | 
 | 1665 | # 1.2.804. 2.1.1.1 1.3.1.1  .2.6 | 
 | 1666 | #     UA    ua-pki  4145 le | 
 | 1667 | # DSTU named curves | 
 | 1668 | dstu4145le 2 0 : uacurve0 : DSTU curve 0 | 
 | 1669 | dstu4145le 2 1 : uacurve1 : DSTU curve 1 | 
 | 1670 | dstu4145le 2 2 : uacurve2 : DSTU curve 2 | 
 | 1671 | dstu4145le 2 3 : uacurve3 : DSTU curve 3 | 
 | 1672 | dstu4145le 2 4 : uacurve4 : DSTU curve 4 | 
 | 1673 | dstu4145le 2 5 : uacurve5 : DSTU curve 5 | 
 | 1674 | dstu4145le 2 6 : uacurve6 : DSTU curve 6 | 
 | 1675 | dstu4145le 2 7 : uacurve7 : DSTU curve 7 | 
 | 1676 | dstu4145le 2 8 : uacurve8 : DSTU curve 8 | 
 | 1677 | dstu4145le 2 9 : uacurve9 : DSTU curve 9 |