/** * Agilicus API * Agilicus is API-first. Modern software is controlled by other software, is open, is available for you to use the way you want, securely, simply. The OpenAPI Specification in YAML format is available on [www](https://www.agilicus.com/www/api/agilicus-openapi.yaml) for importing to other tools. A rendered, online viewable and usable version of this specification is available at [api](https://www.agilicus.com/api). You may try the API inline directly in the web page. To do so, first obtain an Authentication Token (the simplest way is to install the Python SDK, and then run `agilicus-cli --issuer https://MYISSUER get-token`). You will need an org-id for most calls (and can obtain from `agilicus-cli --issuer https://MYISSUER list-orgs`). The `MYISSUER` will typically be `auth.MYDOMAIN`, and you will see it as you sign-in to the administrative UI. This API releases on Bearer-Token authentication. To obtain a valid bearer token you will need to Authenticate to an Issuer with OpenID Connect (a superset of OAUTH2). Your \"issuer\" will look like https://auth.MYDOMAIN. For example, when you signed-up, if you said \"use my own domain name\" and assigned a CNAME of cloud.example.com, then your issuer would be https://auth.cloud.example.com. If you selected \"use an Agilicus supplied domain name\", your issuer would look like https://auth.myorg.agilicus.cloud. For test purposes you can use our [Python SDK](https://pypi.org/project/agilicus/) and run `agilicus-cli --issuer https://auth.MYDOMAIN get-token`. This API may be used in any language runtime that supports OpenAPI 3.0, or, you may use our [Python SDK](https://pypi.org/project/agilicus/), our [Typescript SDK](https://www.npmjs.com/package/@agilicus/angular), or our [Golang SDK](https://git.agilicus.com/pub/sdk-go). 100% of the activities in our system our API-driven, from our web-admin, through our progressive web applications, to all internals: there is nothing that is not accessible. For more information, see [developer resources](https://www.agilicus.com/developer). * * The version of the OpenAPI document: 2025.12.16 * Contact: dev@agilicus.com * * NOTE: This class is auto generated by OpenAPI Generator (https://openapi-generator.tech). * https://openapi-generator.tech * Do not edit the class manually. */ export interface _TrustedCertificateStatus { /** * date/time for which certificate is valid */ readonly not_before?: Date; /** * date/time of certificate expiry */ readonly not_after?: Date; /** * the certificate serial number */ readonly serial_number?: string; /** * the certificate issuer */ readonly issuer?: string; /** * certificate subject */ readonly subject?: string; /** * certificate subject sha128 hash */ readonly subject_sha1?: string; /** * certificate subject sha256 hash */ readonly subject_sha256?: string; /** * public key DER sha128 hash */ readonly public_key_sha1?: string; /** * public key DER sha256 hash */ readonly public_key_sha256?: string; /** * The Subject Key Identifier */ readonly skid?: string; /** * The Authority Key Identifier */ readonly akid?: string; /** * true if the certificate is a certificate authority, otherwise false */ readonly ca?: boolean; /** * the certificate key usage extension */ readonly key_usage_extension?: string; /** * This purpose is set to true when the subject public key is used for verifying digital signatures, other than signatures on certificates (key_cert_sign) and CRLs (crl_sign). */ readonly digital_signature?: boolean; /** * This purpose is set to true when the subject public key is used for verifying digital signatures, other than signatures on certificates (key_cert_sign) and CRLs (crl_sign). It is used to provide a non-repudiation service that protects against the signing entity falsely denying some action. In the case of later conflict, a reliable third party may determine the authenticity of the signed data. This was called non_repudiation in older revisions of the X.509 specification. */ readonly content_commitment?: boolean; /** * This purpose is set to true when the subject public key is used for enciphering private or secret keys. */ readonly key_encipherment?: boolean; /** * This purpose is set to true when the subject public key is used for directly enciphering raw user data without the use of an intermediate symmetric cipher. */ readonly data_encipherment?: boolean; /** * This purpose is set to true when the subject public key is used for key agreement. For example, when a Diffie-Hellman key is to be used for key management, then this purpose is set to true. */ readonly key_agreement?: boolean; /** * This purpose is set to true when the subject public key is used for verifying signatures on public key certificates. If this purpose is set to true then ca must be true in the BasicConstraints extension. */ readonly key_cert_sign?: boolean; /** * This purpose is set to true when the subject public key is used for verifying signatures on certificate revocation lists. */ readonly crl_sign?: boolean; /** * When this purposes is set to true and the key_agreement purpose is also set, the subject public key may be used only for enciphering data while performing key agreement. */ readonly encipher_only?: boolean; /** * When this purposes is set to true and the key_agreement purpose is also set, the subject public key may be used only for deciphering data while performing key agreement. */ readonly decipher_only?: boolean; } export interface TrustedCertificateStatus extends _TrustedCertificateStatus { _builtin_original?: _TrustedCertificateStatus; _remove_builtin_extensions?: () => void; } export declare class TrustedCertificateStatusImpl implements _TrustedCertificateStatus { _builtin_original?: _TrustedCertificateStatus; readonly not_before: Date | undefined; readonly not_after: Date | undefined; readonly serial_number: string | undefined; readonly issuer: string | undefined; readonly subject: string | undefined; readonly subject_sha1: string | undefined; readonly subject_sha256: string | undefined; readonly public_key_sha1: string | undefined; readonly public_key_sha256: string | undefined; readonly skid: string | undefined; readonly akid: string | undefined; readonly ca: boolean | undefined; readonly key_usage_extension: string | undefined; readonly digital_signature: boolean | undefined; readonly content_commitment: boolean | undefined; readonly key_encipherment: boolean | undefined; readonly data_encipherment: boolean | undefined; readonly key_agreement: boolean | undefined; readonly key_cert_sign: boolean | undefined; readonly crl_sign: boolean | undefined; readonly encipher_only: boolean | undefined; readonly decipher_only: boolean | undefined; constructor(base: _TrustedCertificateStatus); _remove_builtin_extensions(): void; } export declare function newTrustedCertificateStatusImpl(base: _TrustedCertificateStatus): TrustedCertificateStatusImpl;