1*b1cdbd2cSJim Jagielski /************************************************************** 2*b1cdbd2cSJim Jagielski * 3*b1cdbd2cSJim Jagielski * Licensed to the Apache Software Foundation (ASF) under one 4*b1cdbd2cSJim Jagielski * or more contributor license agreements. See the NOTICE file 5*b1cdbd2cSJim Jagielski * distributed with this work for additional information 6*b1cdbd2cSJim Jagielski * regarding copyright ownership. The ASF licenses this file 7*b1cdbd2cSJim Jagielski * to you under the Apache License, Version 2.0 (the 8*b1cdbd2cSJim Jagielski * "License"); you may not use this file except in compliance 9*b1cdbd2cSJim Jagielski * with the License. You may obtain a copy of the License at 10*b1cdbd2cSJim Jagielski * 11*b1cdbd2cSJim Jagielski * http://www.apache.org/licenses/LICENSE-2.0 12*b1cdbd2cSJim Jagielski * 13*b1cdbd2cSJim Jagielski * Unless required by applicable law or agreed to in writing, 14*b1cdbd2cSJim Jagielski * software distributed under the License is distributed on an 15*b1cdbd2cSJim Jagielski * "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY 16*b1cdbd2cSJim Jagielski * KIND, either express or implied. See the License for the 17*b1cdbd2cSJim Jagielski * specific language governing permissions and limitations 18*b1cdbd2cSJim Jagielski * under the License. 19*b1cdbd2cSJim Jagielski * 20*b1cdbd2cSJim Jagielski *************************************************************/ 21*b1cdbd2cSJim Jagielski 22*b1cdbd2cSJim Jagielski 23*b1cdbd2cSJim Jagielski 24*b1cdbd2cSJim Jagielski 25*b1cdbd2cSJim Jagielski {SEC_ERROR_IO, "An I/O error occurred during security authorization."}, 26*b1cdbd2cSJim Jagielski 27*b1cdbd2cSJim Jagielski {SEC_ERROR_LIBRARY_FAILURE, "security library failure."}, 28*b1cdbd2cSJim Jagielski 29*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DATA, "security library: received bad data."}, 30*b1cdbd2cSJim Jagielski 31*b1cdbd2cSJim Jagielski {SEC_ERROR_OUTPUT_LEN, "security library: output length error."}, 32*b1cdbd2cSJim Jagielski 33*b1cdbd2cSJim Jagielski {SEC_ERROR_INPUT_LEN, "security library has experienced an input length error."}, 34*b1cdbd2cSJim Jagielski 35*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_ARGS, "security library: invalid arguments."}, 36*b1cdbd2cSJim Jagielski 37*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_ALGORITHM, "security library: invalid algorithm."}, 38*b1cdbd2cSJim Jagielski 39*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_AVA, "security library: invalid AVA."}, 40*b1cdbd2cSJim Jagielski 41*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_TIME, "Improperly formatted time string."}, 42*b1cdbd2cSJim Jagielski 43*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DER, "security library: improperly formatted DER-encoded message."}, 44*b1cdbd2cSJim Jagielski 45*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_SIGNATURE, "Peer's certificate has an invalid signature."}, 46*b1cdbd2cSJim Jagielski 47*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPIRED_CERTIFICATE, "Peer's Certificate has expired."}, 48*b1cdbd2cSJim Jagielski 49*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE, "Peer's Certificate has been revoked."}, 50*b1cdbd2cSJim Jagielski 51*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_ISSUER, "Peer's Certificate issuer is not recognized."}, 52*b1cdbd2cSJim Jagielski 53*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_KEY, "Peer's public key is invalid."}, 54*b1cdbd2cSJim Jagielski 55*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_PASSWORD, "The security password entered is incorrect."}, 56*b1cdbd2cSJim Jagielski 57*b1cdbd2cSJim Jagielski {SEC_ERROR_RETRY_PASSWORD, "New password entered incorrectly. Please try again."}, 58*b1cdbd2cSJim Jagielski 59*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_NODELOCK, "security library: no nodelock."}, 60*b1cdbd2cSJim Jagielski 61*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DATABASE, "security library: bad database."}, 62*b1cdbd2cSJim Jagielski 63*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_MEMORY, "security library: memory allocation failure."}, 64*b1cdbd2cSJim Jagielski 65*b1cdbd2cSJim Jagielski {SEC_ERROR_UNTRUSTED_ISSUER, "Peer's certificate issuer has been marked as not trusted by the user."}, 66*b1cdbd2cSJim Jagielski 67*b1cdbd2cSJim Jagielski {SEC_ERROR_UNTRUSTED_CERT, "Peer's certificate has been marked as not trusted by the user."}, 68*b1cdbd2cSJim Jagielski 69*b1cdbd2cSJim Jagielski {SEC_ERROR_DUPLICATE_CERT, "Certificate already exists in your database."}, 70*b1cdbd2cSJim Jagielski 71*b1cdbd2cSJim Jagielski {SEC_ERROR_DUPLICATE_CERT_NAME, "Downloaded certificate's name duplicates one already in your database."}, 72*b1cdbd2cSJim Jagielski 73*b1cdbd2cSJim Jagielski {SEC_ERROR_ADDING_CERT, "Error adding certificate to database."}, 74*b1cdbd2cSJim Jagielski 75*b1cdbd2cSJim Jagielski {SEC_ERROR_FILING_KEY, "Error refiling the key for this certificate."}, 76*b1cdbd2cSJim Jagielski 77*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_KEY, "The private key for this certificate cannot be found in key database"}, 78*b1cdbd2cSJim Jagielski 79*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_VALID, "This certificate is valid."}, 80*b1cdbd2cSJim Jagielski 81*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NOT_VALID, "This certificate is not valid."}, 82*b1cdbd2cSJim Jagielski 83*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NO_RESPONSE, "Cert Library: No Response"}, 84*b1cdbd2cSJim Jagielski 85*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPIRED_ISSUER_CERTIFICATE, "The certificate issuer's certificate has expired. Check your system date and time."}, 86*b1cdbd2cSJim Jagielski 87*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_EXPIRED, "The CRL for the certificate's issuer has expired. Update it or check your system date and time."}, 88*b1cdbd2cSJim Jagielski 89*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_BAD_SIGNATURE, "The CRL for the certificate's issuer has an invalid signature."}, 90*b1cdbd2cSJim Jagielski 91*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_INVALID, "New CRL has an invalid format."}, 92*b1cdbd2cSJim Jagielski 93*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTENSION_VALUE_INVALID, "Certificate extension value is invalid."}, 94*b1cdbd2cSJim Jagielski 95*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTENSION_NOT_FOUND, "Certificate extension not found."}, 96*b1cdbd2cSJim Jagielski 97*b1cdbd2cSJim Jagielski {SEC_ERROR_CA_CERT_INVALID, "Issuer certificate is invalid."}, 98*b1cdbd2cSJim Jagielski 99*b1cdbd2cSJim Jagielski {SEC_ERROR_PATH_LEN_CONSTRAINT_INVALID, "Certificate path length constraint is invalid."}, 100*b1cdbd2cSJim Jagielski 101*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_USAGES_INVALID, "Certificate usages field is invalid."}, 102*b1cdbd2cSJim Jagielski 103*b1cdbd2cSJim Jagielski {SEC_INTERNAL_ONLY, "**Internal ONLY module**"}, 104*b1cdbd2cSJim Jagielski 105*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_KEY, "The key does not support the requested operation."}, 106*b1cdbd2cSJim Jagielski 107*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_CRITICAL_EXTENSION, "Certificate contains unknown critical extension."}, 108*b1cdbd2cSJim Jagielski 109*b1cdbd2cSJim Jagielski {SEC_ERROR_OLD_CRL, "New CRL is not later than the current one."}, 110*b1cdbd2cSJim Jagielski 111*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_EMAIL_CERT, "Not encrypted or signed: you do not yet have an email certificate."}, 112*b1cdbd2cSJim Jagielski 113*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_RECIPIENT_CERTS_QUERY, "Not encrypted: you do not have certificates for each of the recipients."}, 114*b1cdbd2cSJim Jagielski 115*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_A_RECIPIENT, "Cannot decrypt: you are not a recipient, or matching certificate and \ 116*b1cdbd2cSJim Jagielski private key not found."}, 117*b1cdbd2cSJim Jagielski 118*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS7_KEYALG_MISMATCH, "Cannot decrypt: key encryption algorithm does not match your certificate."}, 119*b1cdbd2cSJim Jagielski 120*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS7_BAD_SIGNATURE, "Signature verification failed: no signer found, too many signers found, \ 121*b1cdbd2cSJim Jagielski or improper or corrupted data."}, 122*b1cdbd2cSJim Jagielski 123*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_KEYALG, "Unsupported or unknown key algorithm."}, 124*b1cdbd2cSJim Jagielski 125*b1cdbd2cSJim Jagielski {SEC_ERROR_DECRYPTION_DISALLOWED, "Cannot decrypt: encrypted using a disallowed algorithm or key size."}, 126*b1cdbd2cSJim Jagielski 127*b1cdbd2cSJim Jagielski 128*b1cdbd2cSJim Jagielski /* Fortezza Alerts */ 129*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_BAD_CARD, "Fortezza card has not been properly initialized. \ 130*b1cdbd2cSJim Jagielski Please remove it and return it to your issuer."}, 131*b1cdbd2cSJim Jagielski 132*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NO_CARD, "No Fortezza cards Found"}, 133*b1cdbd2cSJim Jagielski 134*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NONE_SELECTED, "No Fortezza card selected"}, 135*b1cdbd2cSJim Jagielski 136*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_MORE_INFO, "Please select a personality to get more info on"}, 137*b1cdbd2cSJim Jagielski 138*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_PERSON_NOT_FOUND, "Personality not found"}, 139*b1cdbd2cSJim Jagielski 140*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NO_MORE_INFO, "No more information on that Personality"}, 141*b1cdbd2cSJim Jagielski 142*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_BAD_PIN, "Invalid Pin"}, 143*b1cdbd2cSJim Jagielski 144*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_PERSON_ERROR, "Couldn't initialize Fortezza personalities."}, 145*b1cdbd2cSJim Jagielski /* end fortezza alerts. */ 146*b1cdbd2cSJim Jagielski 147*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_KRL, "No KRL for this site's certificate has been found."}, 148*b1cdbd2cSJim Jagielski 149*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_EXPIRED, "The KRL for this site's certificate has expired."}, 150*b1cdbd2cSJim Jagielski 151*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_BAD_SIGNATURE, "The KRL for this site's certificate has an invalid signature."}, 152*b1cdbd2cSJim Jagielski 153*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_KEY, "The key for this site's certificate has been revoked."}, 154*b1cdbd2cSJim Jagielski 155*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_INVALID, "New KRL has an invalid format."}, 156*b1cdbd2cSJim Jagielski 157*b1cdbd2cSJim Jagielski {SEC_ERROR_NEED_RANDOM, "security library: need random data."}, 158*b1cdbd2cSJim Jagielski 159*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_MODULE, "security library: no security module can perform the requested operation."}, 160*b1cdbd2cSJim Jagielski 161*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_TOKEN, "The security card or token does not exist, needs to be initialized, or has been removed."}, 162*b1cdbd2cSJim Jagielski 163*b1cdbd2cSJim Jagielski {SEC_ERROR_READ_ONLY, "security library: read-only database."}, 164*b1cdbd2cSJim Jagielski 165*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_SLOT_SELECTED, "No slot or token was selected."}, 166*b1cdbd2cSJim Jagielski 167*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NICKNAME_COLLISION, "A certificate with the same nickname already exists."}, 168*b1cdbd2cSJim Jagielski 169*b1cdbd2cSJim Jagielski {SEC_ERROR_KEY_NICKNAME_COLLISION, "A key with the same nickname already exists."}, 170*b1cdbd2cSJim Jagielski 171*b1cdbd2cSJim Jagielski {SEC_ERROR_SAFE_NOT_CREATED, "error while creating safe object"}, 172*b1cdbd2cSJim Jagielski 173*b1cdbd2cSJim Jagielski {SEC_ERROR_BAGGAGE_NOT_CREATED, "error while creating baggage object"}, 174*b1cdbd2cSJim Jagielski 175*b1cdbd2cSJim Jagielski {XP_JAVA_REMOVE_PRINCIPAL_ERROR, "Couldn't remove the principal"}, 176*b1cdbd2cSJim Jagielski 177*b1cdbd2cSJim Jagielski {XP_JAVA_DELETE_PRIVILEGE_ERROR, "Couldn't delete the privilege"}, 178*b1cdbd2cSJim Jagielski 179*b1cdbd2cSJim Jagielski {XP_JAVA_CERT_NOT_EXISTS_ERROR, "This principal doesn't have a certificate"}, 180*b1cdbd2cSJim Jagielski 181*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_EXPORT_ALGORITHM, "Required algorithm is not allowed."}, 182*b1cdbd2cSJim Jagielski 183*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPORTING_CERTIFICATES, "Error attempting to export certificates."}, 184*b1cdbd2cSJim Jagielski 185*b1cdbd2cSJim Jagielski {SEC_ERROR_IMPORTING_CERTIFICATES, "Error attempting to import certificates."}, 186*b1cdbd2cSJim Jagielski 187*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_DECODING_PFX, "Unable to import. Decoding error. File not valid."}, 188*b1cdbd2cSJim Jagielski 189*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_INVALID_MAC, "Unable to import. Invalid MAC. Incorrect password or corrupt file."}, 190*b1cdbd2cSJim Jagielski 191*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_MAC_ALGORITHM, "Unable to import. MAC algorithm not supported."}, 192*b1cdbd2cSJim Jagielski 193*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_TRANSPORT_MODE, "Unable to import. Only password integrity and privacy modes supported."}, 194*b1cdbd2cSJim Jagielski 195*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_CORRUPT_PFX_STRUCTURE, "Unable to import. File structure is corrupt."}, 196*b1cdbd2cSJim Jagielski 197*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_PBE_ALGORITHM, "Unable to import. Encryption algorithm not supported."}, 198*b1cdbd2cSJim Jagielski 199*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_VERSION, "Unable to import. File version not supported."}, 200*b1cdbd2cSJim Jagielski 201*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_PRIVACY_PASSWORD_INCORRECT, "Unable to import. Incorrect privacy password."}, 202*b1cdbd2cSJim Jagielski 203*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_CERT_COLLISION, "Unable to import. Same nickname already exists in database."}, 204*b1cdbd2cSJim Jagielski 205*b1cdbd2cSJim Jagielski {SEC_ERROR_USER_CANCELLED, "The user pressed cancel."}, 206*b1cdbd2cSJim Jagielski 207*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_DUPLICATE_DATA, "Not imported, already in database."}, 208*b1cdbd2cSJim Jagielski 209*b1cdbd2cSJim Jagielski {SEC_ERROR_MESSAGE_SEND_ABORTED, "Message not sent."}, 210*b1cdbd2cSJim Jagielski 211*b1cdbd2cSJim Jagielski {SEC_ERROR_INADEQUATE_KEY_USAGE, "Certificate key usage inadequate for attempted operation."}, 212*b1cdbd2cSJim Jagielski 213*b1cdbd2cSJim Jagielski {SEC_ERROR_INADEQUATE_CERT_TYPE, "Certificate type not approved for application."}, 214*b1cdbd2cSJim Jagielski 215*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_ADDR_MISMATCH, "Address in signing certificate does not match address in message headers."}, 216*b1cdbd2cSJim Jagielski 217*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_IMPORT_KEY, "Unable to import. Error attempting to import private key."}, 218*b1cdbd2cSJim Jagielski 219*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_IMPORTING_CERT_CHAIN, "Unable to import. Error attempting to import certificate chain."}, 220*b1cdbd2cSJim Jagielski 221*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_LOCATE_OBJECT_BY_NAME, "Unable to export. Unable to locate certificate or key by nickname."}, 222*b1cdbd2cSJim Jagielski 223*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_EXPORT_KEY, "Unable to export. Private Key could not be located and exported."}, 224*b1cdbd2cSJim Jagielski 225*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_WRITE, "Unable to export. Unable to write the export file."}, 226*b1cdbd2cSJim Jagielski 227*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_READ, "Unable to import. Unable to read the import file."}, 228*b1cdbd2cSJim Jagielski 229*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_KEY_DATABASE_NOT_INITIALIZED, "Unable to export. Key database corrupt or deleted."}, 230*b1cdbd2cSJim Jagielski 231*b1cdbd2cSJim Jagielski {SEC_ERROR_KEYGEN_FAIL, "Unable to generate public/private key pair."}, 232*b1cdbd2cSJim Jagielski 233*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_PASSWORD, "Password entered is invalid. Please pick a different one."}, 234*b1cdbd2cSJim Jagielski 235*b1cdbd2cSJim Jagielski {SEC_ERROR_RETRY_OLD_PASSWORD, "Old password entered incorrectly. Please try again."}, 236*b1cdbd2cSJim Jagielski 237*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_NICKNAME, "Certificate nickname already in use."}, 238*b1cdbd2cSJim Jagielski 239*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_FORTEZZA_ISSUER, "Peer FORTEZZA chain has a non-FORTEZZA Certificate."}, 240*b1cdbd2cSJim Jagielski 241*b1cdbd2cSJim Jagielski {SEC_ERROR_CANNOT_MOVE_SENSITIVE_KEY, "A sensitive key cannot be moved to the slot where it is needed."}, 242*b1cdbd2cSJim Jagielski 243*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_INVALID_MODULE_NAME, "Invalid module name."}, 244*b1cdbd2cSJim Jagielski 245*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_INVALID_DLL, "Invalid module path/filename"}, 246*b1cdbd2cSJim Jagielski 247*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_ADD_MOD_FAILURE, "Unable to add module"}, 248*b1cdbd2cSJim Jagielski 249*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_DEL_MOD_FAILURE, "Unable to delete module"}, 250*b1cdbd2cSJim Jagielski 251*b1cdbd2cSJim Jagielski {SEC_ERROR_OLD_KRL, "New KRL is not later than the current one."}, 252*b1cdbd2cSJim Jagielski 253*b1cdbd2cSJim Jagielski {SEC_ERROR_CKL_CONFLICT, "New CKL has different issuer than current CKL. Delete current CKL."}, 254*b1cdbd2cSJim Jagielski 255*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NOT_IN_NAME_SPACE, "The Certifying Authority for this certificate is not permitted to issue a \ 256*b1cdbd2cSJim Jagielski certificate with this name."}, 257*b1cdbd2cSJim Jagielski 258*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_NOT_YET_VALID, "The key revocation list for this certificate is not yet valid."}, 259*b1cdbd2cSJim Jagielski 260*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_NOT_YET_VALID, "The certificate revocation list for this certificate is not yet valid."}, 261*b1cdbd2cSJim Jagielski 262*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_CERT, "The requested certificate could not be found."}, 263*b1cdbd2cSJim Jagielski 264*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_SIGNER, "The signer's certificate could not be found."}, 265*b1cdbd2cSJim Jagielski 266*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_BAD_ACCESS_LOCATION, "The location for the certificate status server has invalid format."}, 267*b1cdbd2cSJim Jagielski 268*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_RESPONSE_TYPE, "The OCSP response cannot be fully decoded; it is of an unknown type."}, 269*b1cdbd2cSJim Jagielski 270*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_BAD_HTTP_RESPONSE, "The OCSP server returned unexpected/invalid HTTP data."}, 271*b1cdbd2cSJim Jagielski 272*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_MALFORMED_REQUEST, "The OCSP server found the request to be corrupted or improperly formed."}, 273*b1cdbd2cSJim Jagielski 274*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_SERVER_ERROR, "The OCSP server experienced an internal error."}, 275*b1cdbd2cSJim Jagielski 276*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_TRY_SERVER_LATER, "The OCSP server suggests trying again later."}, 277*b1cdbd2cSJim Jagielski 278*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_REQUEST_NEEDS_SIG, "The OCSP server requires a signature on this request."}, 279*b1cdbd2cSJim Jagielski 280*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNAUTHORIZED_REQUEST, "The OCSP server has refused this request as unauthorized."}, 281*b1cdbd2cSJim Jagielski 282*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_RESPONSE_STATUS, "The OCSP server returned an unrecognizable status."}, 283*b1cdbd2cSJim Jagielski 284*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_CERT, "The OCSP server has no status for the certificate."}, 285*b1cdbd2cSJim Jagielski 286*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_NOT_ENABLED, "You must enable OCSP before performing this operation."}, 287*b1cdbd2cSJim Jagielski 288*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_NO_DEFAULT_RESPONDER, "You must set the OCSP default responder before performing this operation."}, 289*b1cdbd2cSJim Jagielski 290*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_MALFORMED_RESPONSE, "The response from the OCSP server was corrupted or improperly formed."}, 291*b1cdbd2cSJim Jagielski 292*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNAUTHORIZED_RESPONSE, "The signer of the OCSP response is not authorized to give status for \ 293*b1cdbd2cSJim Jagielski this certificate."}, 294*b1cdbd2cSJim Jagielski 295*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_FUTURE_RESPONSE, "The OCSP response is not yet valid (contains a date in the future},."}, 296*b1cdbd2cSJim Jagielski 297*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_OLD_RESPONSE, "The OCSP response contains out-of-date information."}, 298*b1cdbd2cSJim Jagielski 299*b1cdbd2cSJim Jagielski {SEC_ERROR_DIGEST_NOT_FOUND, "The CMS or PKCS #7 Digest was not found in signed message."}, 300*b1cdbd2cSJim Jagielski 301*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_MESSAGE_TYPE, "The CMS or PKCS #7 Message type is unsupported."}, 302*b1cdbd2cSJim Jagielski 303*b1cdbd2cSJim Jagielski {SEC_ERROR_MODULE_STUCK, "PKCS #11 module could not be removed because it is still in use."}, 304*b1cdbd2cSJim Jagielski 305*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_TEMPLATE, "Could not decode ASN.1 data. Specified template was invalid."}, 306*b1cdbd2cSJim Jagielski 307*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_NOT_FOUND, "No matching CRL was found."}, 308*b1cdbd2cSJim Jagielski 309*b1cdbd2cSJim Jagielski {SEC_ERROR_REUSED_ISSUER_AND_SERIAL, "You are attempting to import a cert with the same issuer/serial as \ 310*b1cdbd2cSJim Jagielski an existing cert, but that is not the same cert."}, 311*b1cdbd2cSJim Jagielski 312*b1cdbd2cSJim Jagielski {SEC_ERROR_BUSY, "NSS could not shutdown. Objects are still in use."}, 313*b1cdbd2cSJim Jagielski 314*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTRA_INPUT, "DER-encoded message contained extra unused data."}, 315*b1cdbd2cSJim Jagielski 316*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_ELLIPTIC_CURVE, "Unsupported elliptic curve."}, 317*b1cdbd2cSJim Jagielski 318*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_EC_POINT_FORM, "Unsupported elliptic curve point form."}, 319*b1cdbd2cSJim Jagielski 320*b1cdbd2cSJim Jagielski {SEC_ERROR_UNRECOGNIZED_OID, "Unrecognized Object Identifier."}, 321*b1cdbd2cSJim Jagielski 322*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_INVALID_SIGNING_CERT, "Invalid OCSP signing certificate in OCSP response."}, 323*b1cdbd2cSJim Jagielski 324*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE_CRL, "Certificate is revoked in issuer's certificate revocation list."}, 325*b1cdbd2cSJim Jagielski 326*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE_OCSP, "Issuer's OCSP responder reports certificate is revoked."}, 327*b1cdbd2cSJim Jagielski 328*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_INVALID_VERSION, "Issuer's Certificate Revocation List has an unknown version number."}, 329*b1cdbd2cSJim Jagielski 330*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_V1_CRITICAL_EXTENSION, "Issuer's V1 Certificate Revocation List has a critical extension."}, 331*b1cdbd2cSJim Jagielski 332*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_UNKNOWN_CRITICAL_EXTENSION, "Issuer's V2 Certificate Revocation List has an unknown critical extension."}, 333*b1cdbd2cSJim Jagielski 334*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_OBJECT_TYPE, "Unknown object type specified."}, 335*b1cdbd2cSJim Jagielski 336*b1cdbd2cSJim Jagielski {SEC_ERROR_INCOMPATIBLE_PKCS11, "PKCS #11 driver violates the spec in an incompatible way."}, 337*b1cdbd2cSJim Jagielski 338*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_EVENT, "No new slot event is available at this time."}, 339*b1cdbd2cSJim Jagielski 340*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_ALREADY_EXISTS, "CRL already exists."}, 341*b1cdbd2cSJim Jagielski 342*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_INITIALIZED, "NSS is not initialized."}, 343*b1cdbd2cSJim Jagielski 344*b1cdbd2cSJim Jagielski {SEC_ERROR_TOKEN_NOT_LOGGED_IN, "The operation failed because the PKCS#11 token is not logged in."}, 345*b1cdbd2cSJim Jagielski 346*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_RESPONDER_CERT_INVALID, "Configured OCSP responder's certificate is invalid."}, 347*b1cdbd2cSJim Jagielski 348*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_BAD_SIGNATURE, "OCSP response has an invalid signature."}, 349*b1cdbd2cSJim Jagielski 350*b1cdbd2cSJim Jagielski {SEC_ERROR_OUT_OF_SEARCH_LIMITS, "Cert validation search is out of search limits"}, 351*b1cdbd2cSJim Jagielski 352*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_POLICY_MAPPING, "Policy mapping contains anypolicy"}, 353*b1cdbd2cSJim Jagielski 354*b1cdbd2cSJim Jagielski {SEC_ERROR_POLICY_VALIDATION_FAILED, "Cert chain fails policy validation"}, 355*b1cdbd2cSJim Jagielski 356*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_AIA_LOCATION_TYPE, "Unknown location type in cert AIA extension"}, 357*b1cdbd2cSJim Jagielski 358*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_HTTP_RESPONSE, "Server returned bad HTTP response"}, 359*b1cdbd2cSJim Jagielski 360*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_LDAP_RESPONSE, "Server returned bad LDAP response"}, 361*b1cdbd2cSJim Jagielski 362*b1cdbd2cSJim Jagielski {SEC_ERROR_FAILED_TO_ENCODE_DATA, "Failed to encode data with ASN1 encoder"}, 363*b1cdbd2cSJim Jagielski 364*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_INFO_ACCESS_LOCATION, "Bad information access location in cert extension"}, 365*b1cdbd2cSJim Jagielski 366*b1cdbd2cSJim Jagielski {SEC_ERROR_LIBPKIX_INTERNAL, "Libpkix internal error occured during cert validation."}, 367*b1cdbd2cSJim Jagielski 368*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_GENERAL_ERROR, "A PKCS #11 module returned CKR_GENERAL_ERROR, indicating that an unrecoverable error has occurred."}, 369*b1cdbd2cSJim Jagielski 370*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_FUNCTION_FAILED, "A PKCS #11 module returned CKR_FUNCTION_FAILED, indicating that the requested function could not be performed. Trying the same operation again might succeed."}, 371*b1cdbd2cSJim Jagielski 372*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_DEVICE_ERROR, "A PKCS #11 module returned CKR_DEVICE_ERROR, indicating that a problem has occurred with the token or slot."}, 373*b1cdbd2cSJim Jagielski 374*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_INFO_ACCESS_METHOD, "Unknown information access method in certificate extension."}, 375*b1cdbd2cSJim Jagielski 376*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_IMPORT_FAILED, "Error attempting to import a CRL."}, 377*b1cdbd2cSJim Jagielski 378