1656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* ocsp_ht.c */ 2e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu/* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL 3656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * project 2006. 4656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 5656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* ==================================================================== 6656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Copyright (c) 2006 The OpenSSL Project. All rights reserved. 7656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 8656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Redistribution and use in source and binary forms, with or without 9656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * modification, are permitted provided that the following conditions 10656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * are met: 11656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 12656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 1. Redistributions of source code must retain the above copyright 13656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * notice, this list of conditions and the following disclaimer. 14656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 15656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 2. Redistributions in binary form must reproduce the above copyright 16656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * notice, this list of conditions and the following disclaimer in 17656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * the documentation and/or other materials provided with the 18656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * distribution. 19656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 20656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 3. All advertising materials mentioning features or use of this 21656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * software must display the following acknowledgment: 22656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "This product includes software developed by the OpenSSL Project 23656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)" 24656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 25656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to 26656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * endorse or promote products derived from this software without 27656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * prior written permission. For written permission, please contact 28656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * licensing@OpenSSL.org. 29656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 30656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 5. Products derived from this software may not be called "OpenSSL" 31656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * nor may "OpenSSL" appear in their names without prior written 32656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * permission of the OpenSSL Project. 33656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 34656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 6. Redistributions of any form whatsoever must retain the following 35656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * acknowledgment: 36656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "This product includes software developed by the OpenSSL Project 37656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)" 38656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 39656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY 40656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 41656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 42656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR 43656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 44656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 45656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 46656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 47656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 48656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 49656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 50656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * OF THE POSSIBILITY OF SUCH DAMAGE. 51656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ==================================================================== 52656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 53656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This product includes cryptographic software written by Eric Young 54656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * (eay@cryptsoft.com). This product includes software written by Tim 55656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Hudson (tjh@cryptsoft.com). 56656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 57656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 58656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 59656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdio.h> 60656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdlib.h> 61656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <ctype.h> 62656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <string.h> 63e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu#include "e_os.h" 64e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu#include <openssl/asn1.h> 65656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/ocsp.h> 66656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/err.h> 67656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/buffer.h> 68656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifdef OPENSSL_SYS_SUNOS 69656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define strtoul (unsigned long)strtol 70656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif /* OPENSSL_SYS_SUNOS */ 71656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 72656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Stateful OCSP request code, supporting non-blocking I/O */ 73656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 74656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Opaque OCSP request status structure */ 75656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 76656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstruct ocsp_req_ctx_st { 77656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int state; /* Current I/O state */ 78656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project unsigned char *iobuf; /* Line buffer */ 79656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int iobuflen; /* Line buffer length */ 80656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO *io; /* BIO to perform I/O with */ 81656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO *mem; /* Memory BIO response is built into */ 82656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project unsigned long asn1_len; /* ASN1 length of response */ 83656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project }; 84656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 85656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OCSP_MAX_REQUEST_LENGTH (100 * 1024) 86656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OCSP_MAX_LINE_LEN 4096; 87656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 88656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP states */ 89656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 90656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* If set no reading should be performed */ 91656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_NOREAD 0x1000 92656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Error condition */ 93656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ERROR (0 | OHS_NOREAD) 94656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* First line being read */ 95656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_FIRSTLINE 1 96656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* MIME headers being read */ 97656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_HEADERS 2 98656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP initial header (tag + length) being read */ 99656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_HEADER 3 100656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP content octets being read */ 101656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_CONTENT 4 102656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Request being sent */ 103656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_WRITE (6 | OHS_NOREAD) 104656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Request being flushed */ 105656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_FLUSH (7 | OHS_NOREAD) 106656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Completed */ 107656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_DONE (8 | OHS_NOREAD) 108656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 109656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 110656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic int parse_http_line1(char *line); 111656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 112656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectvoid OCSP_REQ_CTX_free(OCSP_REQ_CTX *rctx) 113656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 114656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->mem) 115656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO_free(rctx->mem); 116656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->iobuf) 117656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OPENSSL_free(rctx->iobuf); 118656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OPENSSL_free(rctx); 119656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 120656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 121221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromint OCSP_REQ_CTX_set1_req(OCSP_REQ_CTX *rctx, OCSP_REQUEST *req) 122656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 123221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom static const char req_hdr[] = 124656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project "Content-Type: application/ocsp-request\r\n" 125656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project "Content-Length: %d\r\n\r\n"; 126221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_printf(rctx->mem, req_hdr, i2d_OCSP_REQUEST(req, NULL)) <= 0) 127221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 128221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (i2d_OCSP_REQUEST_bio(rctx->mem, req) <= 0) 129221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 130221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->state = OHS_ASN1_WRITE; 131221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->asn1_len = BIO_get_mem_data(rctx->mem, NULL); 132221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 1; 133221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 134221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 135221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromint OCSP_REQ_CTX_add1_header(OCSP_REQ_CTX *rctx, 136221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom const char *name, const char *value) 137221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 138221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (!name) 139221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 140221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_puts(rctx->mem, name) <= 0) 141221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 142221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (value) 143221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 144221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_write(rctx->mem, ": ", 2) != 2) 145221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 146221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_puts(rctx->mem, value) <= 0) 147221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 148221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 149221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_write(rctx->mem, "\r\n", 2) != 2) 150221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 151221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 1; 152221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 153221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 154221304ee937bc0910948a8be1320cb8cc4eb6d36Brian CarlstromOCSP_REQ_CTX *OCSP_sendreq_new(BIO *io, char *path, OCSP_REQUEST *req, 155221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int maxline) 156221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 157221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom static const char post_hdr[] = "POST %s HTTP/1.0\r\n"; 158656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 159656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX *rctx; 160656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx = OPENSSL_malloc(sizeof(OCSP_REQ_CTX)); 161c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root if (!rctx) 162c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root return NULL; 163221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->state = OHS_ERROR; 164656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->mem = BIO_new(BIO_s_mem()); 165656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->io = io; 166221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->asn1_len = 0; 167656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (maxline > 0) 168656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuflen = maxline; 169656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 170656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuflen = OCSP_MAX_LINE_LEN; 171656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuf = OPENSSL_malloc(rctx->iobuflen); 172c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root if (!rctx->mem || !rctx->iobuf) 173c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root goto err; 174656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!path) 175656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project path = "/"; 176656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 177221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_printf(rctx->mem, post_hdr, path) <= 0) 178c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root goto err; 179221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 180221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (req && !OCSP_REQ_CTX_set1_req(rctx, req)) 181c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root goto err; 182656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 183656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return rctx; 184c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root err: 185c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root OCSP_REQ_CTX_free(rctx); 186c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root return NULL; 187656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 188656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 189656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Parse the HTTP response. This will look like this: 190656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "HTTP/1.0 200 OK". We need to obtain the numeric code and 191656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * (optional) informational message. 192656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 193656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 194656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic int parse_http_line1(char *line) 195656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 196656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int retcode; 197656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project char *p, *q, *r; 198656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip to first white space (passed protocol info) */ 199656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 200656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(p = line; *p && !isspace((unsigned char)*p); p++) 201656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project continue; 202656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*p) 203656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 204656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 205656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 206656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 207656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 208656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 209656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip past white space to start of response code */ 210656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project while(*p && isspace((unsigned char)*p)) 211656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p++; 212656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 213656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*p) 214656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 215656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 216656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 217656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 218656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 219656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 220656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Find end of response code: first whitespace after start of code */ 221656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(q = p; *q && !isspace((unsigned char)*q); q++) 222656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project continue; 223656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 224656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*q) 225656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 226656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 227656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 228656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 229656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 230656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 231656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Set end of response code and start of message */ 232656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *q++ = 0; 233656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 234656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Attempt to parse numeric code */ 235656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project retcode = strtoul(p, &r, 10); 236656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 237656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(*r) 238656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 239656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 240656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip over any leading white space in message */ 241656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project while(*q && isspace((unsigned char)*q)) 242656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project q++; 243656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 244656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(*q) 245656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 246656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Finally zap any trailing white space in message (include 247656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * CRLF) */ 248656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 249656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* We know q has a non white space character so this is OK */ 250656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(r = q + strlen(q) - 1; isspace((unsigned char)*r); r--) 251656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *r = 0; 252656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 253656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(retcode != 200) 254656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 255656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, OCSP_R_SERVER_RESPONSE_ERROR); 256656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*q) 257656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ERR_add_error_data(2, "Code=", p); 258656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 259656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ERR_add_error_data(4, "Code=", p, ",Reason=", q); 260656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 261656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 262656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 263656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 264656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 265656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 266656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 267656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 268656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint OCSP_sendreq_nbio(OCSP_RESPONSE **presp, OCSP_REQ_CTX *rctx) 269656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 270656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int i, n; 271656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project const unsigned char *p; 272656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project next_io: 273656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!(rctx->state & OHS_NOREAD)) 274656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 275656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_read(rctx->io, rctx->iobuf, rctx->iobuflen); 276656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 277656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n <= 0) 278656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 279656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 280656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 281656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 282656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 283656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 284656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Write data to memory BIO */ 285656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 286656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_write(rctx->mem, rctx->iobuf, n) != n) 287656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 288656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 289656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 290656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project switch(rctx->state) 291656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 292656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 293656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_WRITE: 294656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 295656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 296656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project i = BIO_write(rctx->io, 297656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p + (n - rctx->asn1_len), rctx->asn1_len); 298656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 299656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (i <= 0) 300656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 301656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 302656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 303656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 304656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 305656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 306656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 307656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len -= i; 308656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 309656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->asn1_len > 0) 310656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 311656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 312656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_FLUSH; 313656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 314656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project (void)BIO_reset(rctx->mem); 315656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 316656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_FLUSH: 317656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 318656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project i = BIO_flush(rctx->io); 319656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 320656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (i > 0) 321656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 322656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_FIRSTLINE; 323656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 324656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 325656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 326656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 327656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 328656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 329656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 330656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 331656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 332656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ERROR: 333656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 334656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 335656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_FIRSTLINE: 336656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_HEADERS: 337656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 338656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Attempt to read a line in */ 339656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 340656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project next_line: 341656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Due to &%^*$" memory BIO behaviour with BIO_gets we 342656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * have to check there's a complete line in there before 343656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * calling BIO_gets or we'll just get a partial read. 344656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 345656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 346656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if ((n <= 0) || !memchr(p, '\n', n)) 347656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 348656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n >= rctx->iobuflen) 349656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 350656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 351656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 352656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 353656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 354656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 355656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_gets(rctx->mem, (char *)rctx->iobuf, rctx->iobuflen); 356656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 357656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n <= 0) 358656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 359656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->mem)) 360656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 361656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 362656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 363656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 364656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 365656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Don't allow excessive lines */ 366656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n == rctx->iobuflen) 367656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 368656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 369656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 370656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 371656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 372656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* First line */ 373656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->state == OHS_FIRSTLINE) 374656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 375656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (parse_http_line1((char *)rctx->iobuf)) 376656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 377656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_HEADERS; 378656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_line; 379656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 380656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 381656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 382656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 383656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 384656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 385656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 386656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 387656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 388656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Look for blank line: end of headers */ 389656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for (p = rctx->iobuf; *p; p++) 390656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 391656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if ((*p != '\r') && (*p != '\n')) 392656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project break; 393656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 394656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p) 395656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_line; 396656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 397656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_HEADER; 398656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 399656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 400656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 401656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Fall thru */ 402656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 403656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 404656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_HEADER: 40543c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom /* Now reading ASN1 header: can read at least 2 bytes which 40643c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * is enough for ASN1 SEQUENCE header and either length field 40743c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * or at least the length of the length field. 408656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 409656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 41043c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom if (n < 2) 411656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 412656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 413656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Check it is an ASN1 SEQUENCE */ 414656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p++ != (V_ASN1_SEQUENCE|V_ASN1_CONSTRUCTED)) 415656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 416656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 417656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 418656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 419656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 420656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Check out length field */ 421656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p & 0x80) 422656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 42343c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom /* If MSB set on initial length octet we can now 42443c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * always read 6 octets: make sure we have them. 42543c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom */ 42643c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom if (n < 6) 42743c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom goto next_io; 428656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = *p & 0x7F; 429656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Not NDEF or excessive length */ 430656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!n || (n > 4)) 431656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 432656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 433656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 434656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 435656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p++; 436656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len = 0; 437656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for (i = 0; i < n; i++) 438656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 439656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len <<= 8; 440656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len |= *p++; 441656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 442656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 443656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->asn1_len > OCSP_MAX_REQUEST_LENGTH) 444656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 445656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 446656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 447656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 448656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 449656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len += n + 2; 450656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 451656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 452656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len = *p + 2; 453656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 454656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_CONTENT; 455656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 456656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Fall thru */ 457656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 458656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_CONTENT: 459656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 460656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n < (int)rctx->asn1_len) 461656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 462656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 463656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 464656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *presp = d2i_OCSP_RESPONSE(NULL, &p, rctx->asn1_len); 465656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*presp) 466656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 467656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_DONE; 468656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 469656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 470656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 471656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 472656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 473656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 474656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project break; 475656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 476656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_DONE: 477656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 478656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 479656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 480656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 481656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 482656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 483656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 484656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 485656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 486656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 487656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 488656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Blocking OCSP request handler: now a special case of non-blocking I/O */ 489656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 490656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source ProjectOCSP_RESPONSE *OCSP_sendreq_bio(BIO *b, char *path, OCSP_REQUEST *req) 491656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 492656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_RESPONSE *resp = NULL; 493656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX *ctx; 494656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int rv; 495656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 496656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ctx = OCSP_sendreq_new(b, path, req, -1); 497656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 498c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root if (!ctx) 499c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root return NULL; 500c64f6fe2be99cb3fa8e491b5bede9a217de87a4cKenny Root 501656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project do 502656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 503656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rv = OCSP_sendreq_nbio(&resp, ctx); 504656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } while ((rv == -1) && BIO_should_retry(b)); 505656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 506656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX_free(ctx); 507656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 508656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rv) 509656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return resp; 510656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 511656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return NULL; 512656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 513