1*b1cdbd2cSJim Jagielski /**************************************************************
2*b1cdbd2cSJim Jagielski  *
3*b1cdbd2cSJim Jagielski  * Licensed to the Apache Software Foundation (ASF) under one
4*b1cdbd2cSJim Jagielski  * or more contributor license agreements.  See the NOTICE file
5*b1cdbd2cSJim Jagielski  * distributed with this work for additional information
6*b1cdbd2cSJim Jagielski  * regarding copyright ownership.  The ASF licenses this file
7*b1cdbd2cSJim Jagielski  * to you under the Apache License, Version 2.0 (the
8*b1cdbd2cSJim Jagielski  * "License"); you may not use this file except in compliance
9*b1cdbd2cSJim Jagielski  * with the License.  You may obtain a copy of the License at
10*b1cdbd2cSJim Jagielski  *
11*b1cdbd2cSJim Jagielski  *   http://www.apache.org/licenses/LICENSE-2.0
12*b1cdbd2cSJim Jagielski  *
13*b1cdbd2cSJim Jagielski  * Unless required by applicable law or agreed to in writing,
14*b1cdbd2cSJim Jagielski  * software distributed under the License is distributed on an
15*b1cdbd2cSJim Jagielski  * "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
16*b1cdbd2cSJim Jagielski  * KIND, either express or implied.  See the License for the
17*b1cdbd2cSJim Jagielski  * specific language governing permissions and limitations
18*b1cdbd2cSJim Jagielski  * under the License.
19*b1cdbd2cSJim Jagielski  *
20*b1cdbd2cSJim Jagielski  *************************************************************/
21*b1cdbd2cSJim Jagielski 
22*b1cdbd2cSJim Jagielski 
23*b1cdbd2cSJim Jagielski 
24*b1cdbd2cSJim Jagielski 
25*b1cdbd2cSJim Jagielski {SEC_ERROR_IO, "An I/O error occurred during security authorization."},
26*b1cdbd2cSJim Jagielski 
27*b1cdbd2cSJim Jagielski {SEC_ERROR_LIBRARY_FAILURE, "security library failure."},
28*b1cdbd2cSJim Jagielski 
29*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DATA, "security library: received bad data."},
30*b1cdbd2cSJim Jagielski 
31*b1cdbd2cSJim Jagielski {SEC_ERROR_OUTPUT_LEN, "security library: output length error."},
32*b1cdbd2cSJim Jagielski 
33*b1cdbd2cSJim Jagielski {SEC_ERROR_INPUT_LEN, "security library has experienced an input length error."},
34*b1cdbd2cSJim Jagielski 
35*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_ARGS, "security library: invalid arguments."},
36*b1cdbd2cSJim Jagielski 
37*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_ALGORITHM, "security library: invalid algorithm."},
38*b1cdbd2cSJim Jagielski 
39*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_AVA, "security library: invalid AVA."},
40*b1cdbd2cSJim Jagielski 
41*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_TIME, "Improperly formatted time string."},
42*b1cdbd2cSJim Jagielski 
43*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DER, "security library: improperly formatted DER-encoded message."},
44*b1cdbd2cSJim Jagielski 
45*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_SIGNATURE, "Peer's certificate has an invalid signature."},
46*b1cdbd2cSJim Jagielski 
47*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPIRED_CERTIFICATE, "Peer's Certificate has expired."},
48*b1cdbd2cSJim Jagielski 
49*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE, "Peer's Certificate has been revoked."},
50*b1cdbd2cSJim Jagielski 
51*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_ISSUER, "Peer's Certificate issuer is not recognized."},
52*b1cdbd2cSJim Jagielski 
53*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_KEY, "Peer's public key is invalid."},
54*b1cdbd2cSJim Jagielski 
55*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_PASSWORD, "The security password entered is incorrect."},
56*b1cdbd2cSJim Jagielski 
57*b1cdbd2cSJim Jagielski {SEC_ERROR_RETRY_PASSWORD, "New password entered incorrectly.  Please try again."},
58*b1cdbd2cSJim Jagielski 
59*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_NODELOCK, "security library: no nodelock."},
60*b1cdbd2cSJim Jagielski 
61*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_DATABASE, "security library: bad database."},
62*b1cdbd2cSJim Jagielski 
63*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_MEMORY, "security library: memory allocation failure."},
64*b1cdbd2cSJim Jagielski 
65*b1cdbd2cSJim Jagielski {SEC_ERROR_UNTRUSTED_ISSUER, "Peer's certificate issuer has been marked as not trusted by the user."},
66*b1cdbd2cSJim Jagielski 
67*b1cdbd2cSJim Jagielski {SEC_ERROR_UNTRUSTED_CERT, "Peer's certificate has been marked as not trusted by the user."},
68*b1cdbd2cSJim Jagielski 
69*b1cdbd2cSJim Jagielski {SEC_ERROR_DUPLICATE_CERT, "Certificate already exists in your database."},
70*b1cdbd2cSJim Jagielski 
71*b1cdbd2cSJim Jagielski {SEC_ERROR_DUPLICATE_CERT_NAME, "Downloaded certificate's name duplicates one already in your database."},
72*b1cdbd2cSJim Jagielski 
73*b1cdbd2cSJim Jagielski {SEC_ERROR_ADDING_CERT, "Error adding certificate to database."},
74*b1cdbd2cSJim Jagielski 
75*b1cdbd2cSJim Jagielski {SEC_ERROR_FILING_KEY, "Error refiling the key for this certificate."},
76*b1cdbd2cSJim Jagielski 
77*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_KEY, "The private key for this certificate cannot be found in key database"},
78*b1cdbd2cSJim Jagielski 
79*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_VALID, "This certificate is valid."},
80*b1cdbd2cSJim Jagielski 
81*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NOT_VALID, "This certificate is not valid."},
82*b1cdbd2cSJim Jagielski 
83*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NO_RESPONSE, "Cert Library: No Response"},
84*b1cdbd2cSJim Jagielski 
85*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPIRED_ISSUER_CERTIFICATE, "The certificate issuer's certificate has expired.  Check your system date and time."},
86*b1cdbd2cSJim Jagielski 
87*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_EXPIRED, "The CRL for the certificate's issuer has expired.  Update it or check your system date and time."},
88*b1cdbd2cSJim Jagielski 
89*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_BAD_SIGNATURE, "The CRL for the certificate's issuer has an invalid signature."},
90*b1cdbd2cSJim Jagielski 
91*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_INVALID, "New CRL has an invalid format."},
92*b1cdbd2cSJim Jagielski 
93*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTENSION_VALUE_INVALID, "Certificate extension value is invalid."},
94*b1cdbd2cSJim Jagielski 
95*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTENSION_NOT_FOUND, "Certificate extension not found."},
96*b1cdbd2cSJim Jagielski 
97*b1cdbd2cSJim Jagielski {SEC_ERROR_CA_CERT_INVALID, "Issuer certificate is invalid."},
98*b1cdbd2cSJim Jagielski 
99*b1cdbd2cSJim Jagielski {SEC_ERROR_PATH_LEN_CONSTRAINT_INVALID,	"Certificate path length constraint is invalid."},
100*b1cdbd2cSJim Jagielski 
101*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_USAGES_INVALID, "Certificate usages field is invalid."},
102*b1cdbd2cSJim Jagielski 
103*b1cdbd2cSJim Jagielski {SEC_INTERNAL_ONLY, "**Internal ONLY module**"},
104*b1cdbd2cSJim Jagielski 
105*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_KEY, "The key does not support the requested operation."},
106*b1cdbd2cSJim Jagielski 
107*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_CRITICAL_EXTENSION, "Certificate contains unknown critical extension."},
108*b1cdbd2cSJim Jagielski 
109*b1cdbd2cSJim Jagielski {SEC_ERROR_OLD_CRL, "New CRL is not later than the current one."},
110*b1cdbd2cSJim Jagielski 
111*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_EMAIL_CERT, "Not encrypted or signed: you do not yet have an email certificate."},
112*b1cdbd2cSJim Jagielski 
113*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_RECIPIENT_CERTS_QUERY, "Not encrypted: you do not have certificates for each of the recipients."},
114*b1cdbd2cSJim Jagielski 
115*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_A_RECIPIENT, "Cannot decrypt: you are not a recipient, or matching certificate and \
116*b1cdbd2cSJim Jagielski private key not found."},
117*b1cdbd2cSJim Jagielski 
118*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS7_KEYALG_MISMATCH, "Cannot decrypt: key encryption algorithm does not match your certificate."},
119*b1cdbd2cSJim Jagielski 
120*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS7_BAD_SIGNATURE, "Signature verification failed: no signer found, too many signers found, \
121*b1cdbd2cSJim Jagielski or improper or corrupted data."},
122*b1cdbd2cSJim Jagielski 
123*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_KEYALG, "Unsupported or unknown key algorithm."},
124*b1cdbd2cSJim Jagielski 
125*b1cdbd2cSJim Jagielski {SEC_ERROR_DECRYPTION_DISALLOWED, "Cannot decrypt: encrypted using a disallowed algorithm or key size."},
126*b1cdbd2cSJim Jagielski 
127*b1cdbd2cSJim Jagielski 
128*b1cdbd2cSJim Jagielski /* Fortezza Alerts */
129*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_BAD_CARD, "Fortezza card has not been properly initialized.  \
130*b1cdbd2cSJim Jagielski Please remove it and return it to your issuer."},
131*b1cdbd2cSJim Jagielski 
132*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NO_CARD, "No Fortezza cards Found"},
133*b1cdbd2cSJim Jagielski 
134*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NONE_SELECTED,	"No Fortezza card selected"},
135*b1cdbd2cSJim Jagielski 
136*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_MORE_INFO, "Please select a personality to get more info on"},
137*b1cdbd2cSJim Jagielski 
138*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_PERSON_NOT_FOUND, "Personality not found"},
139*b1cdbd2cSJim Jagielski 
140*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_NO_MORE_INFO, "No more information on that Personality"},
141*b1cdbd2cSJim Jagielski 
142*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_BAD_PIN, "Invalid Pin"},
143*b1cdbd2cSJim Jagielski 
144*b1cdbd2cSJim Jagielski {XP_SEC_FORTEZZA_PERSON_ERROR, "Couldn't initialize Fortezza personalities."},
145*b1cdbd2cSJim Jagielski /* end fortezza alerts. */
146*b1cdbd2cSJim Jagielski 
147*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_KRL, "No KRL for this site's certificate has been found."},
148*b1cdbd2cSJim Jagielski 
149*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_EXPIRED, "The KRL for this site's certificate has expired."},
150*b1cdbd2cSJim Jagielski 
151*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_BAD_SIGNATURE, "The KRL for this site's certificate has an invalid signature."},
152*b1cdbd2cSJim Jagielski 
153*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_KEY, "The key for this site's certificate has been revoked."},
154*b1cdbd2cSJim Jagielski 
155*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_INVALID, "New KRL has an invalid format."},
156*b1cdbd2cSJim Jagielski 
157*b1cdbd2cSJim Jagielski {SEC_ERROR_NEED_RANDOM, "security library: need random data."},
158*b1cdbd2cSJim Jagielski 
159*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_MODULE, "security library: no security module can perform the requested operation."},
160*b1cdbd2cSJim Jagielski 
161*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_TOKEN, "The security card or token does not exist, needs to be initialized, or has been removed."},
162*b1cdbd2cSJim Jagielski 
163*b1cdbd2cSJim Jagielski {SEC_ERROR_READ_ONLY, "security library: read-only database."},
164*b1cdbd2cSJim Jagielski 
165*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_SLOT_SELECTED, "No slot or token was selected."},
166*b1cdbd2cSJim Jagielski 
167*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NICKNAME_COLLISION, "A certificate with the same nickname already exists."},
168*b1cdbd2cSJim Jagielski 
169*b1cdbd2cSJim Jagielski {SEC_ERROR_KEY_NICKNAME_COLLISION, "A key with the same nickname already exists."},
170*b1cdbd2cSJim Jagielski 
171*b1cdbd2cSJim Jagielski {SEC_ERROR_SAFE_NOT_CREATED, "error while creating safe object"},
172*b1cdbd2cSJim Jagielski 
173*b1cdbd2cSJim Jagielski {SEC_ERROR_BAGGAGE_NOT_CREATED, "error while creating baggage object"},
174*b1cdbd2cSJim Jagielski 
175*b1cdbd2cSJim Jagielski {XP_JAVA_REMOVE_PRINCIPAL_ERROR, "Couldn't remove the principal"},
176*b1cdbd2cSJim Jagielski 
177*b1cdbd2cSJim Jagielski {XP_JAVA_DELETE_PRIVILEGE_ERROR, "Couldn't delete the privilege"},
178*b1cdbd2cSJim Jagielski 
179*b1cdbd2cSJim Jagielski {XP_JAVA_CERT_NOT_EXISTS_ERROR, "This principal doesn't have a certificate"},
180*b1cdbd2cSJim Jagielski 
181*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_EXPORT_ALGORITHM, "Required algorithm is not allowed."},
182*b1cdbd2cSJim Jagielski 
183*b1cdbd2cSJim Jagielski {SEC_ERROR_EXPORTING_CERTIFICATES, "Error attempting to export certificates."},
184*b1cdbd2cSJim Jagielski 
185*b1cdbd2cSJim Jagielski {SEC_ERROR_IMPORTING_CERTIFICATES, "Error attempting to import certificates."},
186*b1cdbd2cSJim Jagielski 
187*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_DECODING_PFX, "Unable to import.  Decoding error.  File not valid."},
188*b1cdbd2cSJim Jagielski 
189*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_INVALID_MAC, "Unable to import.  Invalid MAC.  Incorrect password or corrupt file."},
190*b1cdbd2cSJim Jagielski 
191*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_MAC_ALGORITHM, "Unable to import.  MAC algorithm not supported."},
192*b1cdbd2cSJim Jagielski 
193*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_TRANSPORT_MODE, "Unable to import.  Only password integrity and privacy modes supported."},
194*b1cdbd2cSJim Jagielski 
195*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_CORRUPT_PFX_STRUCTURE, "Unable to import.  File structure is corrupt."},
196*b1cdbd2cSJim Jagielski 
197*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_PBE_ALGORITHM, "Unable to import.  Encryption algorithm not supported."},
198*b1cdbd2cSJim Jagielski 
199*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNSUPPORTED_VERSION, "Unable to import.  File version not supported."},
200*b1cdbd2cSJim Jagielski 
201*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_PRIVACY_PASSWORD_INCORRECT, "Unable to import.  Incorrect privacy password."},
202*b1cdbd2cSJim Jagielski 
203*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_CERT_COLLISION, "Unable to import.  Same nickname already exists in database."},
204*b1cdbd2cSJim Jagielski 
205*b1cdbd2cSJim Jagielski {SEC_ERROR_USER_CANCELLED, "The user pressed cancel."},
206*b1cdbd2cSJim Jagielski 
207*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_DUPLICATE_DATA, "Not imported, already in database."},
208*b1cdbd2cSJim Jagielski 
209*b1cdbd2cSJim Jagielski {SEC_ERROR_MESSAGE_SEND_ABORTED, "Message not sent."},
210*b1cdbd2cSJim Jagielski 
211*b1cdbd2cSJim Jagielski {SEC_ERROR_INADEQUATE_KEY_USAGE, "Certificate key usage inadequate for attempted operation."},
212*b1cdbd2cSJim Jagielski 
213*b1cdbd2cSJim Jagielski {SEC_ERROR_INADEQUATE_CERT_TYPE, "Certificate type not approved for application."},
214*b1cdbd2cSJim Jagielski 
215*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_ADDR_MISMATCH, "Address in signing certificate does not match address in message headers."},
216*b1cdbd2cSJim Jagielski 
217*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_IMPORT_KEY,	"Unable to import.  Error attempting to import private key."},
218*b1cdbd2cSJim Jagielski 
219*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_IMPORTING_CERT_CHAIN,	"Unable to import.  Error attempting to import certificate chain."},
220*b1cdbd2cSJim Jagielski 
221*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_LOCATE_OBJECT_BY_NAME, "Unable to export.  Unable to locate certificate or key by nickname."},
222*b1cdbd2cSJim Jagielski 
223*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_EXPORT_KEY,	"Unable to export.  Private Key could not be located and exported."},
224*b1cdbd2cSJim Jagielski 
225*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_WRITE, "Unable to export.  Unable to write the export file."},
226*b1cdbd2cSJim Jagielski 
227*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_UNABLE_TO_READ, "Unable to import.  Unable to read the import file."},
228*b1cdbd2cSJim Jagielski 
229*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS12_KEY_DATABASE_NOT_INITIALIZED, "Unable to export.  Key database corrupt or deleted."},
230*b1cdbd2cSJim Jagielski 
231*b1cdbd2cSJim Jagielski {SEC_ERROR_KEYGEN_FAIL, "Unable to generate public/private key pair."},
232*b1cdbd2cSJim Jagielski 
233*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_PASSWORD, "Password entered is invalid.  Please pick a different one."},
234*b1cdbd2cSJim Jagielski 
235*b1cdbd2cSJim Jagielski {SEC_ERROR_RETRY_OLD_PASSWORD, "Old password entered incorrectly.  Please try again."},
236*b1cdbd2cSJim Jagielski 
237*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_NICKNAME, "Certificate nickname already in use."},
238*b1cdbd2cSJim Jagielski 
239*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_FORTEZZA_ISSUER, "Peer FORTEZZA chain has a non-FORTEZZA Certificate."},
240*b1cdbd2cSJim Jagielski 
241*b1cdbd2cSJim Jagielski {SEC_ERROR_CANNOT_MOVE_SENSITIVE_KEY, "A sensitive key cannot be moved to the slot where it is needed."},
242*b1cdbd2cSJim Jagielski 
243*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_INVALID_MODULE_NAME, "Invalid module name."},
244*b1cdbd2cSJim Jagielski 
245*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_INVALID_DLL, "Invalid module path/filename"},
246*b1cdbd2cSJim Jagielski 
247*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_ADD_MOD_FAILURE, "Unable to add module"},
248*b1cdbd2cSJim Jagielski 
249*b1cdbd2cSJim Jagielski {SEC_ERROR_JS_DEL_MOD_FAILURE, "Unable to delete module"},
250*b1cdbd2cSJim Jagielski 
251*b1cdbd2cSJim Jagielski {SEC_ERROR_OLD_KRL, "New KRL is not later than the current one."},
252*b1cdbd2cSJim Jagielski 
253*b1cdbd2cSJim Jagielski {SEC_ERROR_CKL_CONFLICT, "New CKL has different issuer than current CKL.  Delete current CKL."},
254*b1cdbd2cSJim Jagielski 
255*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_NOT_IN_NAME_SPACE, "The Certifying Authority for this certificate is not permitted to issue a \
256*b1cdbd2cSJim Jagielski certificate with this name."},
257*b1cdbd2cSJim Jagielski 
258*b1cdbd2cSJim Jagielski {SEC_ERROR_KRL_NOT_YET_VALID, "The key revocation list for this certificate is not yet valid."},
259*b1cdbd2cSJim Jagielski 
260*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_NOT_YET_VALID, "The certificate revocation list for this certificate is not yet valid."},
261*b1cdbd2cSJim Jagielski 
262*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_CERT, "The requested certificate could not be found."},
263*b1cdbd2cSJim Jagielski 
264*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_SIGNER, "The signer's certificate could not be found."},
265*b1cdbd2cSJim Jagielski 
266*b1cdbd2cSJim Jagielski {SEC_ERROR_CERT_BAD_ACCESS_LOCATION, "The location for the certificate status server has invalid format."},
267*b1cdbd2cSJim Jagielski 
268*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_RESPONSE_TYPE, "The OCSP response cannot be fully decoded; it is of an unknown type."},
269*b1cdbd2cSJim Jagielski 
270*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_BAD_HTTP_RESPONSE, "The OCSP server returned unexpected/invalid HTTP data."},
271*b1cdbd2cSJim Jagielski 
272*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_MALFORMED_REQUEST, "The OCSP server found the request to be corrupted or improperly formed."},
273*b1cdbd2cSJim Jagielski 
274*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_SERVER_ERROR, "The OCSP server experienced an internal error."},
275*b1cdbd2cSJim Jagielski 
276*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_TRY_SERVER_LATER, "The OCSP server suggests trying again later."},
277*b1cdbd2cSJim Jagielski 
278*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_REQUEST_NEEDS_SIG, "The OCSP server requires a signature on this request."},
279*b1cdbd2cSJim Jagielski 
280*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNAUTHORIZED_REQUEST, "The OCSP server has refused this request as unauthorized."},
281*b1cdbd2cSJim Jagielski 
282*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_RESPONSE_STATUS, "The OCSP server returned an unrecognizable status."},
283*b1cdbd2cSJim Jagielski 
284*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNKNOWN_CERT, "The OCSP server has no status for the certificate."},
285*b1cdbd2cSJim Jagielski 
286*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_NOT_ENABLED, "You must enable OCSP before performing this operation."},
287*b1cdbd2cSJim Jagielski 
288*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_NO_DEFAULT_RESPONDER, "You must set the OCSP default responder before performing this operation."},
289*b1cdbd2cSJim Jagielski 
290*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_MALFORMED_RESPONSE, "The response from the OCSP server was corrupted or improperly formed."},
291*b1cdbd2cSJim Jagielski 
292*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_UNAUTHORIZED_RESPONSE, "The signer of the OCSP response is not authorized to give status for \
293*b1cdbd2cSJim Jagielski this certificate."},
294*b1cdbd2cSJim Jagielski 
295*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_FUTURE_RESPONSE, "The OCSP response is not yet valid (contains a date in the future},."},
296*b1cdbd2cSJim Jagielski 
297*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_OLD_RESPONSE, "The OCSP response contains out-of-date information."},
298*b1cdbd2cSJim Jagielski 
299*b1cdbd2cSJim Jagielski {SEC_ERROR_DIGEST_NOT_FOUND, "The CMS or PKCS #7 Digest was not found in signed message."},
300*b1cdbd2cSJim Jagielski 
301*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_MESSAGE_TYPE, "The CMS or PKCS #7 Message type is unsupported."},
302*b1cdbd2cSJim Jagielski 
303*b1cdbd2cSJim Jagielski {SEC_ERROR_MODULE_STUCK, "PKCS #11 module could not be removed because it is still in use."},
304*b1cdbd2cSJim Jagielski 
305*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_TEMPLATE, "Could not decode ASN.1 data. Specified template was invalid."},
306*b1cdbd2cSJim Jagielski 
307*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_NOT_FOUND, "No matching CRL was found."},
308*b1cdbd2cSJim Jagielski 
309*b1cdbd2cSJim Jagielski {SEC_ERROR_REUSED_ISSUER_AND_SERIAL, "You are attempting to import a cert with the same issuer/serial as \
310*b1cdbd2cSJim Jagielski an existing cert, but that is not the same cert."},
311*b1cdbd2cSJim Jagielski 
312*b1cdbd2cSJim Jagielski {SEC_ERROR_BUSY, "NSS could not shutdown. Objects are still in use."},
313*b1cdbd2cSJim Jagielski 
314*b1cdbd2cSJim Jagielski {SEC_ERROR_EXTRA_INPUT, "DER-encoded message contained extra unused data."},
315*b1cdbd2cSJim Jagielski 
316*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_ELLIPTIC_CURVE, "Unsupported elliptic curve."},
317*b1cdbd2cSJim Jagielski 
318*b1cdbd2cSJim Jagielski {SEC_ERROR_UNSUPPORTED_EC_POINT_FORM, "Unsupported elliptic curve point form."},
319*b1cdbd2cSJim Jagielski 
320*b1cdbd2cSJim Jagielski {SEC_ERROR_UNRECOGNIZED_OID, "Unrecognized Object Identifier."},
321*b1cdbd2cSJim Jagielski 
322*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_INVALID_SIGNING_CERT, "Invalid OCSP signing certificate in OCSP response."},
323*b1cdbd2cSJim Jagielski 
324*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE_CRL, "Certificate is revoked in issuer's certificate revocation list."},
325*b1cdbd2cSJim Jagielski 
326*b1cdbd2cSJim Jagielski {SEC_ERROR_REVOKED_CERTIFICATE_OCSP, "Issuer's OCSP responder reports certificate is revoked."},
327*b1cdbd2cSJim Jagielski 
328*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_INVALID_VERSION, "Issuer's Certificate Revocation List has an unknown version number."},
329*b1cdbd2cSJim Jagielski 
330*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_V1_CRITICAL_EXTENSION, "Issuer's V1 Certificate Revocation List has a critical extension."},
331*b1cdbd2cSJim Jagielski 
332*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_UNKNOWN_CRITICAL_EXTENSION, "Issuer's V2 Certificate Revocation List has an unknown critical extension."},
333*b1cdbd2cSJim Jagielski 
334*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_OBJECT_TYPE,	"Unknown object type specified."},
335*b1cdbd2cSJim Jagielski 
336*b1cdbd2cSJim Jagielski {SEC_ERROR_INCOMPATIBLE_PKCS11,	"PKCS #11 driver violates the spec in an incompatible way."},
337*b1cdbd2cSJim Jagielski 
338*b1cdbd2cSJim Jagielski {SEC_ERROR_NO_EVENT, "No new slot event is available at this time."},
339*b1cdbd2cSJim Jagielski 
340*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_ALREADY_EXISTS, "CRL already exists."},
341*b1cdbd2cSJim Jagielski 
342*b1cdbd2cSJim Jagielski {SEC_ERROR_NOT_INITIALIZED, "NSS is not initialized."},
343*b1cdbd2cSJim Jagielski 
344*b1cdbd2cSJim Jagielski {SEC_ERROR_TOKEN_NOT_LOGGED_IN, "The operation failed because the PKCS#11 token is not logged in."},
345*b1cdbd2cSJim Jagielski 
346*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_RESPONDER_CERT_INVALID, "Configured OCSP responder's certificate is invalid."},
347*b1cdbd2cSJim Jagielski 
348*b1cdbd2cSJim Jagielski {SEC_ERROR_OCSP_BAD_SIGNATURE, "OCSP response has an invalid signature."},
349*b1cdbd2cSJim Jagielski 
350*b1cdbd2cSJim Jagielski {SEC_ERROR_OUT_OF_SEARCH_LIMITS, "Cert validation search is out of search limits"},
351*b1cdbd2cSJim Jagielski 
352*b1cdbd2cSJim Jagielski {SEC_ERROR_INVALID_POLICY_MAPPING, "Policy mapping contains anypolicy"},
353*b1cdbd2cSJim Jagielski 
354*b1cdbd2cSJim Jagielski {SEC_ERROR_POLICY_VALIDATION_FAILED, "Cert chain fails policy validation"},
355*b1cdbd2cSJim Jagielski 
356*b1cdbd2cSJim Jagielski {SEC_ERROR_UNKNOWN_AIA_LOCATION_TYPE, "Unknown location type in cert AIA extension"},
357*b1cdbd2cSJim Jagielski 
358*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_HTTP_RESPONSE, "Server returned bad HTTP response"},
359*b1cdbd2cSJim Jagielski 
360*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_LDAP_RESPONSE, "Server returned bad LDAP response"},
361*b1cdbd2cSJim Jagielski 
362*b1cdbd2cSJim Jagielski {SEC_ERROR_FAILED_TO_ENCODE_DATA, "Failed to encode data with ASN1 encoder"},
363*b1cdbd2cSJim Jagielski 
364*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_INFO_ACCESS_LOCATION, "Bad information access location in cert extension"},
365*b1cdbd2cSJim Jagielski 
366*b1cdbd2cSJim Jagielski {SEC_ERROR_LIBPKIX_INTERNAL, "Libpkix internal error occured during cert validation."},
367*b1cdbd2cSJim Jagielski 
368*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_GENERAL_ERROR, "A PKCS #11 module returned CKR_GENERAL_ERROR, indicating that an unrecoverable error has occurred."},
369*b1cdbd2cSJim Jagielski 
370*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_FUNCTION_FAILED, "A PKCS #11 module returned CKR_FUNCTION_FAILED, indicating that the requested function could not be performed.  Trying the same operation again might succeed."},
371*b1cdbd2cSJim Jagielski 
372*b1cdbd2cSJim Jagielski {SEC_ERROR_PKCS11_DEVICE_ERROR, "A PKCS #11 module returned CKR_DEVICE_ERROR, indicating that a problem has occurred with the token or slot."},
373*b1cdbd2cSJim Jagielski 
374*b1cdbd2cSJim Jagielski {SEC_ERROR_BAD_INFO_ACCESS_METHOD, "Unknown information access method in certificate extension."},
375*b1cdbd2cSJim Jagielski 
376*b1cdbd2cSJim Jagielski {SEC_ERROR_CRL_IMPORT_FAILED, "Error attempting to import a CRL."},
377*b1cdbd2cSJim Jagielski 
378