Extended Key Purposes (KPs)
View at oid-info.com
See IETF RFC 2459.
Internet Assigned Numbers Authority (IANA)
OID | Name | Sub children | Sub Nodes Total | Description |
---|---|---|---|---|
1.3.6.1.5.5.7.3.1 | serverAuth | 0 | 0 | Indicates that a certificate can be used as an SSL server certificate |
1.3.6.1.5.5.7.3.2 | clientAuth | 0 | 0 | Indicates that a certificate can be used as a Secure Sockets Layer (SSL) client certificate |
1.3.6.1.5.5.7.3.3 | codeSigning | 0 | 0 | Indicates that a certificate can be used for code signing |
1.3.6.1.5.5.7.3.4 | emailProtection | 0 | 0 | Indicates that a certificate can be used for protecting email (signing, encryption, key agreement) |
1.3.6.1.5.5.7.3.5 | ipsecEndSystem | 0 | 0 | IPSEC End System Certificate |
1.3.6.1.5.5.7.3.6 | ipsecTunnel | 0 | 0 | IPSEC Tunnel Certificate |
1.3.6.1.5.5.7.3.7 | ipsecUser | 0 | 0 | IPSEC User Certificate |
1.3.6.1.5.5.7.3.8 | timeStamping | 0 | 0 | PKIX key purpose timeStamping Indicates that a certificate can be used to bind the hash of an object to a time from a trusted … |
1.3.6.1.5.5.7.3.9 | ocspSigning | 7 | 7 | Indicates that a X.509 Certificates corresponding private key may be used by an authority to sign OCSP-Responses |
1.3.6.1.5.5.7.3.10 | dvcs | 0 | 0 | PKIX key purpose dvcs |
1.3.6.1.5.5.7.3.11 | 11 | 0 | 0 | "sbgpCertAAServerAuth" key purpose |
1.3.6.1.5.5.7.3.12 | 12 | 0 | 0 | id-kp-scvp-responder |
1.3.6.1.5.5.7.3.13 | id-kp-eapOverPPP | 0 | 0 | Extended key usage value: id-kp-eapOverPPP |
1.3.6.1.5.5.7.3.14 | id-kp-eapOverLAN | 0 | 0 | Extended key usage: id-kp-eapOverLAN |
1.3.6.1.5.5.7.3.15 | id-kp-scvpServer | 0 | 0 | None |
1.3.6.1.5.5.7.3.16 | id-kp-scvpClient | 0 | 0 | None |
1.3.6.1.5.5.7.3.17 | id-kp-ipsecIKE | 0 | 0 | None |
1.3.6.1.5.5.7.3.18 | 18 | 0 | 0 | id-kp-capwapAC |
1.3.6.1.5.5.7.3.19 | id-kp-capwapWTP | 0 | 0 | Control And Provisioning of Wireless Access Points (CAPWAP), Wireless Termination Points (WTP) |
1.3.6.1.5.5.7.3.20 | id-kp-sipDomain | 0 | 0 | Extended Key Usage (EKU) values for Session Initiation Protocol (SIP) domains |
1.3.6.1.5.5.7.3.21 | secureShellClient | 0 | 0 | id-kp-secureShellClient (indicates that the key can be used for a Secure Shell client) |
1.3.6.1.5.5.7.3.22 | secureShellServer | 0 | 0 | id-kp-secureShellServer (indicates that the key can be used for a Secure Shell server) |
1.3.6.1.5.5.7.3.23 | 23 | 0 | 0 | Extended key usage value: id-kp-sendRouter |
1.3.6.1.5.5.7.3.24 | 24 | 0 | 0 | Extended key usage value: id-kp-sendProxy |
1.3.6.1.5.5.7.3.25 | 25 | 0 | 0 | Extended key usage value: id-kp-sendOwner |
1.3.6.1.5.5.7.3.26 | 26 | 0 | 0 | Extended key usage value: id-kp-sendProxiedOwner |
1.3.6.1.5.5.7.3.27 | id-kp-cmcCA | 0 | 0 | None |
1.3.6.1.5.5.7.3.28 | id-kp-cmcRA | 0 | 0 | None |
1.3.6.1.5.5.7.3.29 | id-kp-cmcArchive | 0 | 0 | None |
OID | Name | Sub children | Sub Nodes Total | Description |
---|---|---|---|---|
1.3.6.1.5.5.7.0 | mod | 84 | 84 | ASN.1 modules |
1.3.6.1.5.5.7.1 | pe | 23 | 25 | Public-Key Infrastructure X.509 (PKIX) certificate extensions |
1.3.6.1.5.5.7.2 | qt | 5 | 5 | PKIX Policy Qualifier Types |
1.3.6.1.5.5.7.4 | it | 16 | 16 | Certificate Management Protocol (CMP) information types |
1.3.6.1.5.5.7.5 | pkip | 3 | 15 | Certificate Request Message Format (CRMF) registration |
1.3.6.1.5.5.7.6 | algorithms | 16 | 16 | PKIX algorithms |
1.3.6.1.5.5.7.7 | cmc | 34 | 46 | Certificate Management over CMS (CMC) controls |
1.3.6.1.5.5.7.8 | on | 7 | 7 | Other name forms |
1.3.6.1.5.5.7.9 | pda | 5 | 5 | Personal data attributes |
1.3.6.1.5.5.7.10 | attributeCertificate | 7 | 7 | Attribute certificate attributes |
1.3.6.1.5.5.7.11 | qcs | 2 | 2 | Qualified Certificate (QC) statements |
1.3.6.1.5.5.7.12 | cct | 3 | 3 | Certificate Management over Cryptographic message syntax (CMC) content types |
1.3.6.1.5.5.7.13 | test | 8 | 8 | Certificate policy identifiers provided for testing certificate handling software |
1.3.6.1.5.5.7.14 | cp | 2 | 2 | Certificate policies |
1.3.6.1.5.5.7.15 | cet | 1 | 1 | Certificate Management over Cryptographic message syntax (CMC) error types |
1.3.6.1.5.5.7.16 | ri | 4 | 4 | Revocation information types |
1.3.6.1.5.5.7.17 | id-sct | 7 | 7 | Server-based Certificate Validation Protocol (SCVP) check type |
1.3.6.1.5.5.7.18 | id-swb | 20 | 20 | Server-based Certificate Validation Protocol (SCVP) want back types |
1.3.6.1.5.5.7.19 | id-svp | 4 | 21 | Server-based Certificate Validation Protocol (SCVP) validation policies |
1.3.6.1.5.5.7.20 | id-logo | 3 | 3 | Other logotype identifiers |
1.3.6.1.5.5.7.21 | id-ppl | 3 | 3 | Proxy certificate policy languages |
1.3.6.1.5.5.7.22 | id-mr | 1 | 1 | Matching rules |
1.3.6.1.5.5.7.23 | id-skis | 0 | 0 | Subject key identifier semantics |
1.3.6.1.5.5.7.48 | ad | 12 | 20 | Access descriptors |