summaryrefslogtreecommitdiff
path: root/src/decrypted_kdm.h
diff options
context:
space:
mode:
authorCarl Hetherington <cth@carlh.net>2014-03-19 22:03:18 +0000
committerCarl Hetherington <cth@carlh.net>2014-03-19 22:03:18 +0000
commit5e5750712fb6686cb4a192b3b232be96ad879b49 (patch)
tree68d29b6f44ce230ed89d0136c14cb182040196ae /src/decrypted_kdm.h
parent7702e5d643440e75369078863b34f8a574ee4143 (diff)
A few comments and some tidying.
Diffstat (limited to 'src/decrypted_kdm.h')
-rw-r--r--src/decrypted_kdm.h32
1 files changed, 31 insertions, 1 deletions
diff --git a/src/decrypted_kdm.h b/src/decrypted_kdm.h
index 0bed341d..0f305a16 100644
--- a/src/decrypted_kdm.h
+++ b/src/decrypted_kdm.h
@@ -17,6 +17,10 @@
*/
+/** @file src/decrypted_kdm.h
+ * @brief DecryptedKDM class.
+ */
+
#include "key.h"
#include "local_time.h"
#include "decrypted_kdm_key.h"
@@ -30,6 +34,15 @@ class Signer;
class Certificate;
class CPL;
+/** @class DecryptedKDM
+ * @brief A decrypted KDM.
+ *
+ * This is a KDM that has either been decrypted by a target private key, or one which
+ * has been created by some other means, ready for encryption later.
+ *
+ * A DecryptedKDM object can be created either from an EncryptedKDM and private key file,
+ * or from the details of the MXFs that the KDM should protect.
+ */
class DecryptedKDM
{
public:
@@ -38,6 +51,11 @@ public:
*/
DecryptedKDM (EncryptedKDM const & kdm, boost::filesystem::path private_key);
+ /** Construct a DecryptedKDM.
+ * @param cpl CPL that the keys are for.
+ * @param not_valid_before Start time for the KDM.
+ * @param not_valid_after ENd time for the KDM.
+ */
DecryptedKDM (
boost::shared_ptr<const CPL> cpl,
LocalTime not_valid_before,
@@ -47,9 +65,21 @@ public:
std::string issue_date
);
+ /** Add a key to this KDM.
+ * @param type Key type (MDIK, MDAK etc.)
+ * @param id Key id.
+ * @param key the key itself (which has been used to encrypt a MXF).
+ */
void add_key (std::string type, std::string id, Key key);
- EncryptedKDM encrypt (boost::shared_ptr<const Signer>, boost::shared_ptr<const Certificate>) const;
+ /** Encrypt this KDM's keys and sign the whole KDM.
+ * @param signer Signer.
+ * @param recipient Certificate of the projector/server which should receive this KDM's keys.
+ * @return Encrypted KDM.
+ */
+ EncryptedKDM encrypt (boost::shared_ptr<const Signer> signer, boost::shared_ptr<const Certificate> recipient) const;
+
+ /** @return This KDM's (decrypted) keys, which could be used to decrypt MXFs. */
std::list<DecryptedKDMKey> keys () const {
return _keys;
}