<div class="content" name="dwFlags" uuid="c81f1a69-f093-45a1-8c30-999dfda68406"><p>The dwFlags field consists of a set of flags and values that
MUST define the <i>pctbRequest</i> parameter <span><a href="719b890d-62e6-4322-b9b1-1f34d11535b4#gt_ad861812-8cb0-497a-80bb-13c95aa4e425" data-linktype="relative-path">BLOB</a></span> and the
expected content of the <i>pctbCertChain</i> parameter. This field MUST contain
packed data specified as follows.</p><table>
 <tbody><tr>
  <th><p><br/>0</p></th>
  <th><p><br/>1</p></th>
  <th><p><br/>2</p></th>
  <th><p><br/>3</p></th>
  <th><p><br/>4</p></th>
  <th><p><br/>5</p></th>
  <th><p><br/>6</p></th>
  <th><p><br/>7</p></th>
  <th><p><br/>8</p></th>
  <th><p><br/>9</p></th>
  <th><p>1<br/>0</p></th>
  <th><p><br/>1</p></th>
  <th><p><br/>2</p></th>
  <th><p><br/>3</p></th>
  <th><p><br/>4</p></th>
  <th><p><br/>5</p></th>
  <th><p><br/>6</p></th>
  <th><p><br/>7</p></th>
  <th><p><br/>8</p></th>
  <th><p><br/>9</p></th>
  <th><p>2<br/>0</p></th>
  <th><p><br/>1</p></th>
  <th><p><br/>2</p></th>
  <th><p><br/>3</p></th>
  <th><p><br/>4</p></th>
  <th><p><br/>5</p></th>
  <th><p><br/>6</p></th>
  <th><p><br/>7</p></th>
  <th><p><br/>8</p></th>
  <th><p><br/>9</p></th>
  <th><p>3<br/>0</p></th>
  <th><p><br/>1</p></th>
 </tr>
 <tr>
  <td colspan="8">ExtendedFlags</td>
  <td colspan="8">Flags</td>
  <td colspan="8">RequestType</td>
  <td colspan="8">Padding2</td>
 </tr>
</tbody></table><p><b>ExtendedFlags: </b>This bit-field defines extended
options for the server’s request processing.</p><dl>
<dd>
<table><thead>
  <tr>
   <th>
   <p><span><br/>
   0</span></p>
   </th>
   <th>
   <p><span><br/>
   1</span></p>
   </th>
   <th>
   <p><span><br/>
   2</span></p>
   </th>
   <th>
   <p><span><br/>
   3</span></p>
   </th>
   <th>
   <p><span><br/>
   4</span></p>
   </th>
   <th>
   <p><span><br/>
   5</span></p>
   </th>
   <th>
   <p><span><br/>
   6</span></p>
   </th>
   <th>
   <p><span><br/>
   7</span></p>
   </th>
  </tr>
 </thead><tbody><tr>
  <td>0</td>
  <td>0</td>
  <td>0</td>
  <td>0</td>
  <td>B</td>
  <td>A</td>
  <td>0</td>
  <td>0</td>
 </tr></tbody></table>
</dd>
<dd>
<p>Where the bits are defined as follows:</p>
</dd>
<dd>
<table><thead>
  <tr>
   <th>
   <p> </p>
   </th>
   <th>
   <p>Description</p>
   </th>
  </tr>
 </thead><tbody><tr>
  <td>A</td>
  <td>If this bit is set, the server MUST process the request as a new Certificate Transparency request, in accordance with section 3.2.1.4.2.1.4.3.1.</td>
 </tr><tr>
  <td>B</td>
  <td>If this bit is set, the server MUST process the request as a new Pre-sign certificate request, in accordance with section 3.2.1.4.2.1.4.10.1.</td>
 </tr></tbody></table>
</dd></dl><p><b>Flags (1 byte):</b> This bit-field MUST define
options for the server&#39;s request processing and the response.</p><dl>
<dd>
<table><thead>
  <tr>
   <th>
   <p><span><br/>
   0</span></p>
   </th>
   <th>
   <p><span><br/>
   1</span></p>
   </th>
   <th>
   <p><span><br/>
   2</span></p>
   </th>
   <th>
   <p><span><br/>
   3</span></p>
   </th>
   <th>
   <p><span><br/>
   4</span></p>
   </th>
   <th>
   <p><span><br/>
   5</span></p>
   </th>
   <th>
   <p><span><br/>
   6</span></p>
   </th>
   <th>
   <p><span><br/>
   7</span></p>
   </th>
  </tr>
 </thead><tbody><tr>
  <td>0</td>
  <td>0</td>
  <td>Z</td>
  <td>0</td>
  <td>X</td>
  <td>Y</td>
  <td>0</td>
  <td>0</td>
 </tr></tbody></table>
</dd>
<dd>
<p>Where the bits are defined as
follows: </p>
</dd>
<dd>
<table><thead>
  <tr>
   <th>
   <p>Value</p>
   </th>
   <th>
   <p>Description</p>
   </th>
  </tr>
 </thead><tbody><tr>
  <td>X</td>
  <td>If this bit is set, the response MUST include the CRLs for all the certificates returned in the pctbCertChain and pctbEncodedCert parameters.</td>
 </tr><tr>
  <td>Y</td>
  <td>If this bit is set, then the response MUST be a CMC full PKI response. If it is not set, the response MUST be a CMS. This bit supported by the ICertRequestD2::Request2 method only.</td>
 </tr><tr>
  <td>Z</td>
  <td>If this bit is set, this is a renewal request on behalf of another user. The processing rules for this type of request are specified in section 3.2.2.6.2.1.2.4.</td>
 </tr></tbody></table>
</dd></dl><p><b>RequestType (1 byte): </b>RequestType MUST define
the possible formats of the certificate request submitted in the <i>pctbRequest</i>
parameter (format types are specified in <span><a href="https://go.microsoft.com/fwlink/?LinkId=90382" data-linktype="external">[RFC2797]</a></span>).</p><dl>
<dd>
<table><thead>
  <tr>
   <th>
   <p>Value</p>
   </th>
   <th>
   <p>Meaning</p>
   </th>
  </tr>
 </thead><tbody><tr>
  <td>0x00</td>
  <td>The client relies on CA to determine the request type. See section 3.2.1.4.2.1.4 for more details.</td>
 </tr><tr>
  <td>0x01</td>
  <td>The request format MUST be a PKCS #10 request structure.</td>
 </tr><tr>
  <td>0x02</td>
  <td>The request format MUST be a Netscape KEYGEN request structure.</td>
 </tr><tr>
  <td>0x03</td>
  <td>The request format MUST be a CMS request structure.</td>
 </tr><tr>
  <td>0x04</td>
  <td>The request format MUST be a Certificate Management Messages over a CMS (CMC) request structure.</td>
 </tr><tr>
  <td>0x05</td>
  <td>The request format MUST be a response to the attestation CAChallenge.</td>
 </tr><tr>
  <td>0x06</td>
  <td>The request format MUST be a SignedCertificateTimestampList structure.</td>
 </tr></tbody></table>
</dd></dl><p><b>Padding2
(1 byte): </b>This field MUST be set to 0 and ignored upon receipt.</p></div>