1c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org/* x509spki.c */ 2c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org/* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL 3c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * project 1999. 4c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org */ 5c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org/* ==================================================================== 6c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * Copyright (c) 1999 The OpenSSL Project. All rights reserved. 7c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 8c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * Redistribution and use in source and binary forms, with or without 9c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * modification, are permitted provided that the following conditions 10c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * are met: 11c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 12c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 1. Redistributions of source code must retain the above copyright 13c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * notice, this list of conditions and the following disclaimer. 14c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 15c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 2. Redistributions in binary form must reproduce the above copyright 16c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * notice, this list of conditions and the following disclaimer in 17c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * the documentation and/or other materials provided with the 18c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * distribution. 19c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 20c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 3. All advertising materials mentioning features or use of this 21c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * software must display the following acknowledgment: 22c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * "This product includes software developed by the OpenSSL Project 23c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)" 24c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 25c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to 26c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * endorse or promote products derived from this software without 27c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * prior written permission. For written permission, please contact 28c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * licensing@OpenSSL.org. 29c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 30c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 5. Products derived from this software may not be called "OpenSSL" 31c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * nor may "OpenSSL" appear in their names without prior written 32c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * permission of the OpenSSL Project. 33c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 34c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 6. Redistributions of any form whatsoever must retain the following 35c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * acknowledgment: 36c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * "This product includes software developed by the OpenSSL Project 37c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)" 38c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 39c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY 40c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 41c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 42c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR 43c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 44c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 45c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 46c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 47c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 48c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 49c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 50c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * OF THE POSSIBILITY OF SUCH DAMAGE. 51c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * ==================================================================== 52c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 53c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * This product includes cryptographic software written by Eric Young 54c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * (eay@cryptsoft.com). This product includes software written by Tim 55c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * Hudson (tjh@cryptsoft.com). 56c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org * 57c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org */ 58c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 59c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org#include <stdio.h> 60c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org#include "cryptlib.h" 61c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org#include <openssl/x509.h> 62c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 63c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.orgint NETSCAPE_SPKI_set_pubkey(NETSCAPE_SPKI *x, EVP_PKEY *pkey) 64c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org{ 65c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if ((x == NULL) || (x->spkac == NULL)) return(0); 66c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return(X509_PUBKEY_set(&(x->spkac->pubkey),pkey)); 67c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org} 68c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 69c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.orgEVP_PKEY *NETSCAPE_SPKI_get_pubkey(NETSCAPE_SPKI *x) 70c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org{ 71c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if ((x == NULL) || (x->spkac == NULL)) 72c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return(NULL); 73c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return(X509_PUBKEY_get(x->spkac->pubkey)); 74c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org} 75c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 76c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org/* Load a Netscape SPKI from a base64 encoded string */ 77c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 78c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.orgNETSCAPE_SPKI * NETSCAPE_SPKI_b64_decode(const char *str, int len) 79c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org{ 80c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org unsigned char *spki_der; 81c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org const unsigned char *p; 82c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org int spki_len; 83c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org NETSCAPE_SPKI *spki; 84c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if(len <= 0) len = strlen(str); 85c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if (!(spki_der = OPENSSL_malloc(len + 1))) { 86c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org X509err(X509_F_NETSCAPE_SPKI_B64_DECODE, ERR_R_MALLOC_FAILURE); 87c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return NULL; 88c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org } 89c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org spki_len = EVP_DecodeBlock(spki_der, (const unsigned char *)str, len); 90c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if(spki_len < 0) { 91c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org X509err(X509_F_NETSCAPE_SPKI_B64_DECODE, 92c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org X509_R_BASE64_DECODE_ERROR); 93c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org OPENSSL_free(spki_der); 94c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return NULL; 95c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org } 96c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org p = spki_der; 97c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org spki = d2i_NETSCAPE_SPKI(NULL, &p, spki_len); 98c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org OPENSSL_free(spki_der); 99c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return spki; 100c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org} 101c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 102c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org/* Generate a base64 encoded string from an SPKI */ 103c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org 104c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.orgchar * NETSCAPE_SPKI_b64_encode(NETSCAPE_SPKI *spki) 105c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org{ 106c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org unsigned char *der_spki, *p; 107c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org char *b64_str; 108c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org int der_len; 109c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org der_len = i2d_NETSCAPE_SPKI(spki, NULL); 110c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org der_spki = OPENSSL_malloc(der_len); 111c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org b64_str = OPENSSL_malloc(der_len * 2); 112c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org if(!der_spki || !b64_str) { 113c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org X509err(X509_F_NETSCAPE_SPKI_B64_ENCODE, ERR_R_MALLOC_FAILURE); 114c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return NULL; 115c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org } 116c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org p = der_spki; 117c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org i2d_NETSCAPE_SPKI(spki, &p); 118c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org EVP_EncodeBlock((unsigned char *)b64_str, der_spki, der_len); 119c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org OPENSSL_free(der_spki); 120c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org return b64_str; 121c9490d33b98b7affb729b5f1db13cb0a348471aagl@chromium.org} 122