
I received a PKCS7 message with enveloped data (:pkcs7-envelopedData) and
looking for a way to decrypt the content (PKCS10 CSR) only with the CLI. Is
this possible with openssl? I tried several things with the help of the
asn1parse command but did not find the solution :-(

My message looks like this:

    0:d=0  hl=4 l=1837 cons: SEQUENCE
    4:d=1  hl=2 l=   9 prim:  OBJECT            :pkcs7-signedData
   15:d=1  hl=4 l=1822 cons:  cont [ 0 ]
   19:d=2  hl=4 l=1818 cons:   SEQUENCE
   23:d=3  hl=2 l=   1 prim:    INTEGER           :01
   26:d=3  hl=2 l=  11 cons:    SET
   28:d=4  hl=2 l=   9 cons:     SEQUENCE
   30:d=5  hl=2 l=   5 prim:      OBJECT            :sha1
   37:d=5  hl=2 l=   0 prim:      NULL
   39:d=3  hl=4 l= 874 cons:    SEQUENCE
   43:d=4  hl=2 l=   9 prim:     OBJECT            :pkcs7-data
   54:d=4  hl=4 l= 859 cons:     cont [ 0 ]
   58:d=5  hl=4 l= 855 prim:      OCTET STRING      [HEX

and when I go deeper into the data with openssl asn1parse -in
iphone-pkcs7.pem -strparse 58 -out envelopeddata :

    0:d=0  hl=2 l=inf  cons: SEQUENCE
    2:d=1  hl=2 l=   9 prim: OBJECT            :pkcs7-envelopedData
   13:d=1  hl=2 l=inf  cons: cont [ 0 ]
   15:d=2  hl=2 l=inf  cons: SEQUENCE
   17:d=3  hl=2 l=   1 prim: INTEGER           :00
   20:d=3  hl=4 l= 277 cons: SET
   24:d=4  hl=4 l= 273 cons: SEQUENCE
   28:d=5  hl=2 l=   1 prim: INTEGER           :00
   31:d=5  hl=2 l= 122 cons: SEQUENCE
   33:d=6  hl=2 l= 109 cons: SEQUENCE
   35:d=7  hl=2 l=  11 cons: SET
   37:d=8  hl=2 l=   9 cons: SEQUENCE
   39:d=9  hl=2 l=   3 prim: OBJECT            :countryName

I can see the evenlopedData.


Reply via email to