1656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* apps/crl.c */
2656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * All rights reserved.
4656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
5656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This package is an SSL implementation written
6656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * by Eric Young (eay@cryptsoft.com).
7656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * The implementation was written so as to conform with Netscapes SSL.
8656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
9656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This library is free for commercial and non-commercial use as long as
10656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * the following conditions are aheared to.  The following conditions
11656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * apply to all code found in this distribution, be it the RC4, RSA,
12656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
13656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * included with this distribution is covered by the same copyright terms
14656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
16656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Copyright remains Eric Young's, and as such any Copyright notices in
17656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * the code are not to be removed.
18656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * If this package is used in a product, Eric Young should be given attribution
19656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * as the author of the parts of the library used.
20656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This can be in the form of a textual message at program startup or
21656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * in documentation (online or textual) provided with the package.
22656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
23656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Redistribution and use in source and binary forms, with or without
24656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * modification, are permitted provided that the following conditions
25656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * are met:
26656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 1. Redistributions of source code must retain the copyright
27656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    notice, this list of conditions and the following disclaimer.
28656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 2. Redistributions in binary form must reproduce the above copyright
29656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    notice, this list of conditions and the following disclaimer in the
30656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    documentation and/or other materials provided with the distribution.
31656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 3. All advertising materials mentioning features or use of this software
32656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    must display the following acknowledgement:
33656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    "This product includes cryptographic software written by
34656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *     Eric Young (eay@cryptsoft.com)"
35656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    The word 'cryptographic' can be left out if the rouines from the library
36656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    being used are not cryptographic related :-).
37656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 4. If you include any Windows specific code (or a derivative thereof) from
38656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    the apps directory (application code) you must include an acknowledgement:
39656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
41656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * SUCH DAMAGE.
52656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *
53656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * The licence and distribution terms for any publically available version or
54656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * derivative of this code cannot be changed.  i.e. this code cannot simply be
55656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * copied and put under another distribution licence
56656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * [including the GNU Public Licence.]
57656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */
58656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
59656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdio.h>
60656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdlib.h>
61656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <string.h>
62656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include "apps.h"
63656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/bio.h>
64656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/err.h>
65656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/x509.h>
66656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/x509v3.h>
67656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/pem.h>
68656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
69656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#undef PROG
70656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define PROG	crl_main
71656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
72656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#undef POSTFIX
73656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define	POSTFIX	".rvk"
74656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
75656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic const char *crl_usage[]={
76656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project"usage: crl args\n",
77656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project"\n",
78656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -inform arg     - input format - default PEM (DER or PEM)\n",
79656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -outform arg    - output format - default PEM\n",
80656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -text           - print out a text format version\n",
81656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -in arg         - input file - default stdin\n",
82656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -out arg        - output file - default stdout\n",
83656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -hash           - print hash value\n",
84656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -fingerprint    - print the crl fingerprint\n",
85656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -issuer         - print issuer DN\n",
86656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -lastupdate     - lastUpdate field\n",
87656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -nextupdate     - nextUpdate field\n",
88e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu" -crlnumber      - print CRL number\n",
89656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -noout          - no CRL output\n",
90656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -CAfile  name   - verify CRL using certificates in file \"name\"\n",
91656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -CApath  dir    - verify CRL using certificates in \"dir\"\n",
92656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project" -nameopt arg    - various certificate name options\n",
93656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source ProjectNULL
94656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project};
95656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
96656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic X509_CRL *load_crl(char *file, int format);
97656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic BIO *bio_out=NULL;
98656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
99656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint MAIN(int, char **);
100656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
101656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint MAIN(int argc, char **argv)
102656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	{
103656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	unsigned long nmflag = 0;
104656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_CRL *x=NULL;
105656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	char *CAfile = NULL, *CApath = NULL;
106656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	int ret=1,i,num,badops=0;
107656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO *out=NULL;
108656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	int informat,outformat;
109656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	char *infile=NULL,*outfile=NULL;
110656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	int hash=0,issuer=0,lastupdate=0,nextupdate=0,noout=0,text=0;
111e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu	int fingerprint = 0, crlnumber = 0;
112656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	const char **pp;
113656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_STORE *store = NULL;
114656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_STORE_CTX ctx;
115656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_LOOKUP *lookup = NULL;
116656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_OBJECT xobj;
117656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	EVP_PKEY *pkey;
118656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	int do_ver = 0;
119656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	const EVP_MD *md_alg,*digest=EVP_sha1();
120656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
121656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	apps_startup();
122656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
123656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (bio_err == NULL)
124656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if ((bio_err=BIO_new(BIO_s_file())) != NULL)
125656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_set_fp(bio_err,stderr,BIO_NOCLOSE|BIO_FP_TEXT);
126656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
127656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (!load_config(bio_err, NULL))
128656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
129656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
130656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (bio_out == NULL)
131656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if ((bio_out=BIO_new(BIO_s_file())) != NULL)
132656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
133656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_set_fp(bio_out,stdout,BIO_NOCLOSE);
134656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifdef OPENSSL_SYS_VMS
135656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
136656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO *tmpbio = BIO_new(BIO_f_linebuffer());
137656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			bio_out = BIO_push(tmpbio, bio_out);
138656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
139656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif
140656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
141656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
142656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	informat=FORMAT_PEM;
143656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	outformat=FORMAT_PEM;
144656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
145656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	argc--;
146656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	argv++;
147656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	num=0;
148656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	while (argc >= 1)
149656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
150656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifdef undef
151656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if	(strcmp(*argv,"-p") == 0)
152656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
153656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
154656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (!args_from_file(++argv,Nargc,Nargv)) { goto end; }*/
155656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
156656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif
157656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if 	(strcmp(*argv,"-inform") == 0)
158656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
159656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
160656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			informat=str2fmt(*(++argv));
161656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
162656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-outform") == 0)
163656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
164656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
165656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			outformat=str2fmt(*(++argv));
166656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
167656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-in") == 0)
168656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
169656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
170656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			infile= *(++argv);
171656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
172656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-out") == 0)
173656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
174656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
175656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			outfile= *(++argv);
176656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
177656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-CApath") == 0)
178656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
179656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
180656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			CApath = *(++argv);
181656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			do_ver = 1;
182656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
183656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-CAfile") == 0)
184656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
185656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
186656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			CAfile = *(++argv);
187656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			do_ver = 1;
188656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
189656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-verify") == 0)
190656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			do_ver = 1;
191656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-text") == 0)
192656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			text = 1;
193656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-hash") == 0)
194656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			hash= ++num;
195656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-nameopt") == 0)
196656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
197656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (--argc < 1) goto bad;
198656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (!set_name_ex(&nmflag, *(++argv))) goto bad;
199656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
200656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-issuer") == 0)
201656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			issuer= ++num;
202656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-lastupdate") == 0)
203656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			lastupdate= ++num;
204656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-nextupdate") == 0)
205656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			nextupdate= ++num;
206656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-noout") == 0)
207656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			noout= ++num;
208656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if (strcmp(*argv,"-fingerprint") == 0)
209656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			fingerprint= ++num;
210e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu		else if (strcmp(*argv,"-crlnumber") == 0)
211e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu			crlnumber= ++num;
212656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else if ((md_alg=EVP_get_digestbyname(*argv + 1)))
213656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
214656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			/* ok */
215656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			digest=md_alg;
216656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
217656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else
218656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
219656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_printf(bio_err,"unknown option %s\n",*argv);
220656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			badops=1;
221656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			break;
222656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
223656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		argc--;
224656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		argv++;
225656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
226656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
227656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (badops)
228656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
229656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectbad:
230656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		for (pp=crl_usage; (*pp != NULL); pp++)
231656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_printf(bio_err,"%s",*pp);
232656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
233656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
234656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
235656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	ERR_load_crypto_strings();
236656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	x=load_crl(infile,informat);
237656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (x == NULL) { goto end; }
238656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
239656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if(do_ver) {
240656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		store = X509_STORE_new();
241656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		lookup=X509_STORE_add_lookup(store,X509_LOOKUP_file());
242656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (lookup == NULL) goto end;
243656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (!X509_LOOKUP_load_file(lookup,CAfile,X509_FILETYPE_PEM))
244656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			X509_LOOKUP_load_file(lookup,NULL,X509_FILETYPE_DEFAULT);
245656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
246656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		lookup=X509_STORE_add_lookup(store,X509_LOOKUP_hash_dir());
247656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (lookup == NULL) goto end;
248656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (!X509_LOOKUP_add_dir(lookup,CApath,X509_FILETYPE_PEM))
249656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			X509_LOOKUP_add_dir(lookup,NULL,X509_FILETYPE_DEFAULT);
250656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ERR_clear_error();
251656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
252656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if(!X509_STORE_CTX_init(&ctx, store, NULL, NULL)) {
253656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_printf(bio_err,
254656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				"Error initialising X509 store\n");
255656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			goto end;
256656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
257656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
258656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		i = X509_STORE_get_by_subject(&ctx, X509_LU_X509,
259656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					X509_CRL_get_issuer(x), &xobj);
260656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if(i <= 0) {
261656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_printf(bio_err,
262656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				"Error getting CRL issuer certificate\n");
263656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			goto end;
264656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
265656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		pkey = X509_get_pubkey(xobj.data.x509);
266656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		X509_OBJECT_free_contents(&xobj);
267656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if(!pkey) {
268656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			BIO_printf(bio_err,
269656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				"Error getting CRL issuer public key\n");
270656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			goto end;
271656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
272656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		i = X509_CRL_verify(x, pkey);
273656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		EVP_PKEY_free(pkey);
274656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if(i < 0) goto end;
275656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if(i == 0) BIO_printf(bio_err, "verify failure\n");
276656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		else BIO_printf(bio_err, "verify OK\n");
277656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	}
278656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
279656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (num)
280656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
281656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		for (i=1; i<=num; i++)
282656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
283656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (issuer == i)
284656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				{
285656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				print_name(bio_out, "issuer=", X509_CRL_get_issuer(x), nmflag);
286656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				}
287e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu			if (crlnumber == i)
288e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				{
289e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				ASN1_INTEGER *crlnum;
290e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				crlnum = X509_CRL_get_ext_d2i(x, NID_crl_number,
291e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu							      NULL, NULL);
292e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				BIO_printf(bio_out,"crlNumber=");
293e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				if (crlnum)
294e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu					{
295e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu					i2a_ASN1_INTEGER(bio_out, crlnum);
296e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu					ASN1_INTEGER_free(crlnum);
297e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu					}
298e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				else
299e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu					BIO_puts(bio_out, "<NONE>");
300e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				BIO_printf(bio_out,"\n");
301e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu				}
302656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (hash == i)
303656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				{
304656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"%08lx\n",
305656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					X509_NAME_hash(X509_CRL_get_issuer(x)));
306656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				}
307656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (lastupdate == i)
308656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				{
309656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"lastUpdate=");
310656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				ASN1_TIME_print(bio_out,
311656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						X509_CRL_get_lastUpdate(x));
312656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"\n");
313656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				}
314656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (nextupdate == i)
315656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				{
316656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"nextUpdate=");
317656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				if (X509_CRL_get_nextUpdate(x))
318656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					ASN1_TIME_print(bio_out,
319656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						X509_CRL_get_nextUpdate(x));
320656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				else
321656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					BIO_printf(bio_out,"NONE");
322656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"\n");
323656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				}
324656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			if (fingerprint == i)
325656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				{
326656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				int j;
327656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				unsigned int n;
328656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				unsigned char md[EVP_MAX_MD_SIZE];
329656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
330656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				if (!X509_CRL_digest(x,digest,md,&n))
331656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					{
332656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					BIO_printf(bio_err,"out of memory\n");
333656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					goto end;
334656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					}
335656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				BIO_printf(bio_out,"%s Fingerprint=",
336656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						OBJ_nid2sn(EVP_MD_type(digest)));
337656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				for (j=0; j<(int)n; j++)
338656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					{
339656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					BIO_printf(bio_out,"%02X%c",md[j],
340656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						(j+1 == (int)n)
341656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project						?'\n':':');
342656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project					}
343656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project				}
344656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
345656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
346656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
347656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	out=BIO_new(BIO_s_file());
348656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (out == NULL)
349656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
350656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ERR_print_errors(bio_err);
351656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
352656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
353656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
354656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (outfile == NULL)
355656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
356656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_set_fp(out,stdout,BIO_NOCLOSE);
357656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifdef OPENSSL_SYS_VMS
358656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
359656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO *tmpbio = BIO_new(BIO_f_linebuffer());
360656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		out = BIO_push(tmpbio, out);
361656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
362656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif
363656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
364656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else
365656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
366656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (BIO_write_filename(out,outfile) <= 0)
367656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
368656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			perror(outfile);
369656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			goto end;
370656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
371656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
372656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
373656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (text) X509_CRL_print(out, x);
374656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
375656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (noout)
376656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
377656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ret = 0;
378656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
379656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
380656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
381656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if 	(outformat == FORMAT_ASN1)
382656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		i=(int)i2d_X509_CRL_bio(out,x);
383656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else if (outformat == FORMAT_PEM)
384656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		i=PEM_write_bio_X509_CRL(out,x);
385656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else
386656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
387656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(bio_err,"bad output format specified for outfile\n");
388656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
389656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
390656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (!i) { BIO_printf(bio_err,"unable to write CRL\n"); goto end; }
391656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	ret=0;
392656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectend:
393656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_free_all(out);
394656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_free_all(bio_out);
395656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	bio_out=NULL;
396656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_CRL_free(x);
397656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if(store) {
398656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		X509_STORE_CTX_cleanup(&ctx);
399656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		X509_STORE_free(store);
400656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	}
401656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	apps_shutdown();
402656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	OPENSSL_EXIT(ret);
403656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	}
404656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
405656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic X509_CRL *load_crl(char *infile, int format)
406656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	{
407656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	X509_CRL *x=NULL;
408656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO *in=NULL;
409656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
410656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	in=BIO_new(BIO_s_file());
411656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (in == NULL)
412656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
413656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ERR_print_errors(bio_err);
414656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
415656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
416656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
417656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (infile == NULL)
418656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_set_fp(in,stdin,BIO_NOCLOSE);
419656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else
420656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
421656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		if (BIO_read_filename(in,infile) <= 0)
422656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			{
423656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			perror(infile);
424656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			goto end;
425656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project			}
426656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
427656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if 	(format == FORMAT_ASN1)
428656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		x=d2i_X509_CRL_bio(in,NULL);
429656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else if (format == FORMAT_PEM)
430656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		x=PEM_read_bio_X509_CRL(in,NULL,NULL,NULL);
431656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	else	{
432656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(bio_err,"bad input format specified for input crl\n");
433656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
434656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
435656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	if (x == NULL)
436656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		{
437656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		BIO_printf(bio_err,"unable to load CRL\n");
438656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		ERR_print_errors(bio_err);
439656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		goto end;
440656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project		}
441656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
442656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectend:
443656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	BIO_free(in);
444656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	return(x);
445656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project	}
446656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project
447