1656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* t_crl.c */
2e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu/* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL
3656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * project 1999.
4656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */
5656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* ====================================================================
6656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Copyright (c) 1999 The OpenSSL Project.  All rights reserved.
7656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
8656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Redistribution and use in source and binary forms, with or without
9656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * modification, are permitted provided that the following conditions
10656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * are met:
11656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
12656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 1. Redistributions of source code must retain the above copyright
13656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    notice, this list of conditions and the following disclaimer.
14656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
15656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 2. Redistributions in binary form must reproduce the above copyright
16656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    notice, this list of conditions and the following disclaimer in
17656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    the documentation and/or other materials provided with the
18656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    distribution.
19656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
20656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 3. All advertising materials mentioning features or use of this
21656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    software must display the following acknowledgment:
22656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    "This product includes software developed by the OpenSSL Project
23656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
25656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    endorse or promote products derived from this software without
27656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    prior written permission. For written permission, please contact
28656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    licensing@OpenSSL.org.
29656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
30656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 5. Products derived from this software may not be called "OpenSSL"
31656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    nor may "OpenSSL" appear in their names without prior written
32656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    permission of the OpenSSL Project.
33656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
34656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 6. Redistributions of any form whatsoever must retain the following
35656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    acknowledgment:
36656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    "This product includes software developed by the OpenSSL Project
37656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
39656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * OF THE POSSIBILITY OF SUCH DAMAGE.
51656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ====================================================================
52656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
53656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This product includes cryptographic software written by Eric Young
54656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * (eay@cryptsoft.com).  This product includes software written by Tim
55656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Hudson (tjh@cryptsoft.com).
56656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
57656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */
58656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
59656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdio.h>
60656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include "cryptlib.h"
61656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/buffer.h>
62656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/bn.h>
63656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/objects.h>
64656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/x509.h>
65656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/x509v3.h>
66656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
67656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifndef OPENSSL_NO_FP_API
68656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint X509_CRL_print_fp(FILE *fp, X509_CRL *x)
69656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        {
70656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        BIO *b;
71656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        int ret;
72656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
73656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        if ((b=BIO_new(BIO_s_file())) == NULL)
74656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
75656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		X509err(X509_F_X509_CRL_PRINT_FP,ERR_R_BUF_LIB);
76656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project                return(0);
77656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
78656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        BIO_set_fp(b,fp,BIO_NOCLOSE);
79656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        ret=X509_CRL_print(b, x);
80656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        BIO_free(b);
81656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        return(ret);
82656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project        }
83656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif
84656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
85656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint X509_CRL_print(BIO *out, X509_CRL *x)
86656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project{
87656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	STACK_OF(X509_REVOKED) *rev;
88656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_REVOKED *r;
89656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	long l;
9043c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom	int i;
91656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	char *p;
92656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
93656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out, "Certificate Revocation List (CRL):\n");
94656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	l = X509_CRL_get_version(x);
95656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out, "%8sVersion %lu (0x%lx)\n", "", l+1, l);
96656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	i = OBJ_obj2nid(x->sig_alg->algorithm);
97656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out, "%8sSignature Algorithm: %s\n", "",
98656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				 (i == NID_undef) ? "NONE" : OBJ_nid2ln(i));
99656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	p=X509_NAME_oneline(X509_CRL_get_issuer(x),NULL,0);
100656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out,"%8sIssuer: %s\n","",p);
101656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	OPENSSL_free(p);
102656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out,"%8sLast Update: ","");
103656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	ASN1_TIME_print(out,X509_CRL_get_lastUpdate(x));
104656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out,"\n%8sNext Update: ","");
105656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (X509_CRL_get_nextUpdate(x))
106656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		 ASN1_TIME_print(out,X509_CRL_get_nextUpdate(x));
107656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else BIO_printf(out,"NONE");
108656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_printf(out,"\n");
109656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
110656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509V3_extensions_print(out, "CRL extensions",
111656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						x->crl->extensions, 0, 8);
112656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
113656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	rev = X509_CRL_get_REVOKED(x);
114656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
115656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if(sk_X509_REVOKED_num(rev) > 0)
116656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	    BIO_printf(out, "Revoked Certificates:\n");
117656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else BIO_printf(out, "No Revoked Certificates.\n");
118656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
119656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	for(i = 0; i < sk_X509_REVOKED_num(rev); i++) {
120656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		r = sk_X509_REVOKED_value(rev, i);
121656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(out,"    Serial Number: ");
122656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		i2a_ASN1_INTEGER(out,r->serialNumber);
123656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(out,"\n        Revocation Date: ");
124656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ASN1_TIME_print(out,r->revocationDate);
125656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(out,"\n");
126656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		X509V3_extensions_print(out, "CRL entry extensions",
127656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						r->extensions, 0, 8);
128656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	}
129656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_signature_print(out, x->sig_alg, x->signature);
130656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
131656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	return 1;
132656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
133656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project}
134