2. verify
基本信息
- 接口名称:com.webank.weid.rpc.CredentialService.verify
- 接口定义:ResponseData<Boolean> verify(Credential credential);
- 接口描述: 验证凭证是否正确。
接口入参: com.webank.weid.protocol.base.Credential
名称 | 类型 | 非空 | 说明 | 备注 |
---|---|---|---|---|
context | String | Y | 版本 | 默认为v1 |
id | String | Y | 证书ID | |
cptId | Integer | Y | cptId | |
issuer | String | Y | WeIdentity DID | |
issuanceDate | Long | Y | 创建日期 | |
expirationDate | Long | Y | 到期日期 | |
claim | Map<String, Object> | Y | Claim数据 | |
proof | Map<String, Object> | Y | 签名数据结构体 |
接口返回: com.webank.weid.protocol.response.ResponseData<Boolean>;
名称 | 类型 | 说明 | 备注 |
---|---|---|---|
errorCode | Integer | 返回结果码 | |
errorMessage | String | 返回结果描述 | |
result | Boolean | 返回结果值 | |
transactionInfo | TransactionInfo | 交易信息 |
com.webank.weid.protocol.response.TransactionInfo
名称 | 类型 | 说明 | 备注 |
---|---|---|---|
blockNumber | BigInteger | 交易块高 | |
transactionHash | String | 交易hash | |
transactionIndex | BigInteger | 交易索引 |
此方法返回code
enum | code | desc |
---|---|---|
SUCCESS | 0 | 成功 |
CPT_ID_ILLEGAL | 100303 | cptId无效 |
CREDENTIAL_ERROR | 100400 | Credential标准错误 |
CREDENTIAL_EXPIRED | 100402 | 过期 |
CREDENTIAL_ISSUER_MISMATCH | 100403 | issuer与签名不匹配 |
CREDENTIAL_SIGNATURE_BROKEN | 100405 | 签名破坏 |
CREDENTIAL_ISSUER_NOT_EXISTS | 100407 | WeIdentity DID不能为空 |
CREDENTIAL_CREATE_DATE_ILLEGAL | 100408 | 创建日期格式非法 |
CREDENTIAL_EXPIRE_DATE_ILLEGAL | 100409 | 到期日期格式非法 |
CREDENTIAL_CLAIM_NOT_EXISTS | 100410 | Claim数据不能为空 |
CREDENTIAL_ID_NOT_EXISTS | 100412 | ID为空 |
CREDENTIAL_CONTEXT_NOT_EXISTS | 100413 | context为空 |
CREDENTIAL_CPT_NOT_EXISTS | 100416 | cpt不存在 |
CREDENTIAL_WEID_DOCUMENT_ILLEGAL | 100417 | WeIdentity Document为空 |
CREDENTIAL_ISSUER_INVALID | 100418 | WeIdentity DID无效 |
CREDENTIAL_EXCEPTION_VERIFYSIGNATURE | 100419 | 验证签名异常 |
CREDENTIAL_SIGNATURE_TYPE_ILLEGAL | 100429 | 验证签名类型异常 |
ILLEGAL_INPUT | 160004 | 参数为空 |
调用示例
- CredentialService credentialService = new CredentialServiceImpl();
- HashMap<String, Object> claim = new HashMap<String, Object>(3);
- claim.put("name", "zhang san");
- claim.put("gender", "F");
- claim.put("age", 18);
- CreateCredentialArgs createCredentialArgs = new CreateCredentialArgs();
- createCredentialArgs.setClaim(claim);
- createCredentialArgs.setCptId(1017);
- createCredentialArgs.setExpirationDate(1561448312461L);
- createCredentialArgs.setIssuer("did:weid:101:0x39e5e6f663ef77409144014ceb063713b65600e7");
- WeIdPrivateKey weIdPrivateKey = new WeIdPrivateKey();
- weIdPrivateKey.setPrivateKey("60866441986950167911324536025850958917764441489874006048340539971987791929772");
- createCredentialArgs.setWeIdPrivateKey(weIdPrivateKey);
- //创建Credential
- ResponseData<CredentialWrapper> response = credentialService.createCredential(createCredentialArgs);
- //验证Credential
- ResponseData<Boolean> responseVerify = credentialService.verify(response.getResult().getCredential());
- 返回结果如:
- result: true
- errorCode: 0
- errorMessage: success
- transactionInfo:null
时序图
(同时也包含verifyCredentialWithSpecifiedPubKey时序)
sequenceDiagramparticipant 调用者participant CredentialServiceparticipant CptServiceparticipant WeIdServiceparticipant 区块链节点调用者->>CredentialService: 调用verify()或verifyCredentialWithSpecifiedPubKey()CredentialService->>CredentialService: 入参非空、格式及合法性检查opt 入参校验失败CredentialService—>>调用者: 报错,提示参数不合法并退出endCredentialService->>WeIdService: 查询WeIdentity DID存在性WeIdService->>区块链节点: 调用智能合约,查询WeIdentity DID属性区块链节点—>>WeIdService: 返回查询结果WeIdService—>>CredentialService: 返回查询结果opt 查询不存在CredentialService—>>调用者: 报错并退出endCredentialService->>CptService: 查询CPT存在性及Claim关联语义CptService->>区块链节点: 调用智能合约,查询CPT区块链节点—>>CptService: 返回查询结果CptService—>>CredentialService: 返回查询结果opt 不符合CPT格式要求CredentialService—>>调用者: 报错并退出endCredentialService->>CredentialService: 验证过期、撤销与否opt 任一验证失败CredentialService—>>调用者: 报错并退出endopt 未提供验签公钥CredentialService->>WeIdService: 查询Issuer对应公钥WeIdService->>区块链节点: 调用智能合约,查询Issuer的WeIdentity DID Document区块链节点—>>WeIdService: 返回查询结果WeIdService—>>CredentialService: 返回查询结果endCredentialService->>CredentialService: 通过公钥与签名对比,验证Issuer是否签发此凭证opt 验证签名失败CredentialService—>>调用者: 报错并退出endCredentialService—>>调用者: 返回成功