1656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* ocsp_ht.c */ 2e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu/* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL 3656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * project 2006. 4656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 5656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* ==================================================================== 6656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Copyright (c) 2006 The OpenSSL Project. All rights reserved. 7656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 8656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Redistribution and use in source and binary forms, with or without 9656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * modification, are permitted provided that the following conditions 10656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * are met: 11656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 12656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 1. Redistributions of source code must retain the above copyright 13656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * notice, this list of conditions and the following disclaimer. 14656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 15656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 2. Redistributions in binary form must reproduce the above copyright 16656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * notice, this list of conditions and the following disclaimer in 17656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * the documentation and/or other materials provided with the 18656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * distribution. 19656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 20656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 3. All advertising materials mentioning features or use of this 21656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * software must display the following acknowledgment: 22656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "This product includes software developed by the OpenSSL Project 23656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)" 24656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 25656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to 26656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * endorse or promote products derived from this software without 27656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * prior written permission. For written permission, please contact 28656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * licensing@OpenSSL.org. 29656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 30656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 5. Products derived from this software may not be called "OpenSSL" 31656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * nor may "OpenSSL" appear in their names without prior written 32656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * permission of the OpenSSL Project. 33656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 34656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 6. Redistributions of any form whatsoever must retain the following 35656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * acknowledgment: 36656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "This product includes software developed by the OpenSSL Project 37656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)" 38656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 39656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY 40656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 41656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 42656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR 43656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 44656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 45656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 46656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 47656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 48656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 49656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 50656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * OF THE POSSIBILITY OF SUCH DAMAGE. 51656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * ==================================================================== 52656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 53656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * This product includes cryptographic software written by Eric Young 54656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * (eay@cryptsoft.com). This product includes software written by Tim 55656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * Hudson (tjh@cryptsoft.com). 56656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * 57656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 58656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 59656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdio.h> 60656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <stdlib.h> 61656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <ctype.h> 62656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <string.h> 63e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu#include "e_os.h" 64e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu#include <openssl/asn1.h> 65656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/ocsp.h> 66656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/err.h> 67656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#include <openssl/buffer.h> 68656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#ifdef OPENSSL_SYS_SUNOS 69656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define strtoul (unsigned long)strtol 70656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#endif /* OPENSSL_SYS_SUNOS */ 71656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 72656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Stateful OCSP request code, supporting non-blocking I/O */ 73656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 74656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Opaque OCSP request status structure */ 75656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 76656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstruct ocsp_req_ctx_st { 77656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int state; /* Current I/O state */ 78656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project unsigned char *iobuf; /* Line buffer */ 79656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int iobuflen; /* Line buffer length */ 80656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO *io; /* BIO to perform I/O with */ 81656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO *mem; /* Memory BIO response is built into */ 82656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project unsigned long asn1_len; /* ASN1 length of response */ 83656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project }; 84656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 85656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OCSP_MAX_REQUEST_LENGTH (100 * 1024) 86656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OCSP_MAX_LINE_LEN 4096; 87656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 88656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP states */ 89656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 90656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* If set no reading should be performed */ 91656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_NOREAD 0x1000 92656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Error condition */ 93656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ERROR (0 | OHS_NOREAD) 94656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* First line being read */ 95656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_FIRSTLINE 1 96656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* MIME headers being read */ 97656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_HEADERS 2 98656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP initial header (tag + length) being read */ 99656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_HEADER 3 100656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* OCSP content octets being read */ 101656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_CONTENT 4 102656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Request being sent */ 103656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_WRITE (6 | OHS_NOREAD) 104656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Request being flushed */ 105656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_ASN1_FLUSH (7 | OHS_NOREAD) 106656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Completed */ 107656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project#define OHS_DONE (8 | OHS_NOREAD) 108656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 109656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 110656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic int parse_http_line1(char *line); 111656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 112656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectvoid OCSP_REQ_CTX_free(OCSP_REQ_CTX *rctx) 113656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 114656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->mem) 115656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project BIO_free(rctx->mem); 116656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->iobuf) 117656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OPENSSL_free(rctx->iobuf); 118656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OPENSSL_free(rctx); 119656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 120656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 121221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromint OCSP_REQ_CTX_set1_req(OCSP_REQ_CTX *rctx, OCSP_REQUEST *req) 122656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 123221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom static const char req_hdr[] = 124656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project "Content-Type: application/ocsp-request\r\n" 125656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project "Content-Length: %d\r\n\r\n"; 126221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_printf(rctx->mem, req_hdr, i2d_OCSP_REQUEST(req, NULL)) <= 0) 127221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 128221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (i2d_OCSP_REQUEST_bio(rctx->mem, req) <= 0) 129221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 130221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->state = OHS_ASN1_WRITE; 131221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->asn1_len = BIO_get_mem_data(rctx->mem, NULL); 132221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 1; 133221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 134221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 135221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromint OCSP_REQ_CTX_add1_header(OCSP_REQ_CTX *rctx, 136221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom const char *name, const char *value) 137221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 138221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (!name) 139221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 140221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_puts(rctx->mem, name) <= 0) 141221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 142221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (value) 143221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 144221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_write(rctx->mem, ": ", 2) != 2) 145221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 146221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_puts(rctx->mem, value) <= 0) 147221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 148221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 149221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_write(rctx->mem, "\r\n", 2) != 2) 150221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 151221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 1; 152221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } 153221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 154221304ee937bc0910948a8be1320cb8cc4eb6d36Brian CarlstromOCSP_REQ_CTX *OCSP_sendreq_new(BIO *io, char *path, OCSP_REQUEST *req, 155221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int maxline) 156221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom { 157221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom static const char post_hdr[] = "POST %s HTTP/1.0\r\n"; 158656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 159656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX *rctx; 160656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx = OPENSSL_malloc(sizeof(OCSP_REQ_CTX)); 161221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->state = OHS_ERROR; 162656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->mem = BIO_new(BIO_s_mem()); 163656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->io = io; 164221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom rctx->asn1_len = 0; 165656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (maxline > 0) 166656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuflen = maxline; 167656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 168656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuflen = OCSP_MAX_LINE_LEN; 169656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->iobuf = OPENSSL_malloc(rctx->iobuflen); 170221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (!rctx->iobuf) 171221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom return 0; 172656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!path) 173656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project path = "/"; 174656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 175221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (BIO_printf(rctx->mem, post_hdr, path) <= 0) 176656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 177221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 178221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom if (req && !OCSP_REQ_CTX_set1_req(rctx, req)) 179656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 180656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 181656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return rctx; 182656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 183656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 184656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Parse the HTTP response. This will look like this: 185656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * "HTTP/1.0 200 OK". We need to obtain the numeric code and 186656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * (optional) informational message. 187656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 188656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 189656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectstatic int parse_http_line1(char *line) 190656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 191656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int retcode; 192656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project char *p, *q, *r; 193656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip to first white space (passed protocol info) */ 194656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 195656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(p = line; *p && !isspace((unsigned char)*p); p++) 196656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project continue; 197656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*p) 198656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 199656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 200656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 201656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 202656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 203656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 204656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip past white space to start of response code */ 205656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project while(*p && isspace((unsigned char)*p)) 206656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p++; 207656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 208656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*p) 209656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 210656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 211656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 212656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 213656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 214656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 215656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Find end of response code: first whitespace after start of code */ 216656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(q = p; *q && !isspace((unsigned char)*q); q++) 217656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project continue; 218656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 219656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*q) 220656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 221656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, 222656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_R_SERVER_RESPONSE_PARSE_ERROR); 223656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 224656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 225656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 226656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Set end of response code and start of message */ 227656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *q++ = 0; 228656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 229656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Attempt to parse numeric code */ 230656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project retcode = strtoul(p, &r, 10); 231656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 232656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(*r) 233656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 234656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 235656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Skip over any leading white space in message */ 236656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project while(*q && isspace((unsigned char)*q)) 237656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project q++; 238656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 239656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(*q) 240656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 241656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Finally zap any trailing white space in message (include 242656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * CRLF) */ 243656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 244656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* We know q has a non white space character so this is OK */ 245656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for(r = q + strlen(q) - 1; isspace((unsigned char)*r); r--) 246656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *r = 0; 247656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 248656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(retcode != 200) 249656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 250656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSPerr(OCSP_F_PARSE_HTTP_LINE1, OCSP_R_SERVER_RESPONSE_ERROR); 251656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if(!*q) 252656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ERR_add_error_data(2, "Code=", p); 253656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 254656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ERR_add_error_data(4, "Code=", p, ",Reason=", q); 255656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 256656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 257656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 258656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 259656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 260656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 261656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 262656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 263656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Projectint OCSP_sendreq_nbio(OCSP_RESPONSE **presp, OCSP_REQ_CTX *rctx) 264656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 265656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int i, n; 266656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project const unsigned char *p; 267656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project next_io: 268656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!(rctx->state & OHS_NOREAD)) 269656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 270656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_read(rctx->io, rctx->iobuf, rctx->iobuflen); 271656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 272656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n <= 0) 273656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 274656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 275656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 276656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 277656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 278656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 279656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Write data to memory BIO */ 280656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 281656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_write(rctx->mem, rctx->iobuf, n) != n) 282656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 283656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 284656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 285656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project switch(rctx->state) 286656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 287656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 288656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_WRITE: 289656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 290656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 291656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project i = BIO_write(rctx->io, 292656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p + (n - rctx->asn1_len), rctx->asn1_len); 293656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 294656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (i <= 0) 295656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 296656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 297656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 298656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 299656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 300656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 301656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 302656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len -= i; 303656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 304656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->asn1_len > 0) 305656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 306656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 307656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_FLUSH; 308656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 309656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project (void)BIO_reset(rctx->mem); 310656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 311656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_FLUSH: 312656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 313656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project i = BIO_flush(rctx->io); 314656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 315656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (i > 0) 316656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 317656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_FIRSTLINE; 318656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 319656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 320656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 321656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->io)) 322656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return -1; 323656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 324656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 325656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 326656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 327656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ERROR: 328656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 329656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 330656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_FIRSTLINE: 331656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_HEADERS: 332656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 333656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Attempt to read a line in */ 334656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 335656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project next_line: 336656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Due to &%^*$" memory BIO behaviour with BIO_gets we 337656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * have to check there's a complete line in there before 338656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project * calling BIO_gets or we'll just get a partial read. 339656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 340656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 341656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if ((n <= 0) || !memchr(p, '\n', n)) 342656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 343656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n >= rctx->iobuflen) 344656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 345656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 346656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 347656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 348656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 349656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 350656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_gets(rctx->mem, (char *)rctx->iobuf, rctx->iobuflen); 351656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 352656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n <= 0) 353656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 354656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (BIO_should_retry(rctx->mem)) 355656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 356656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 357656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 358656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 359656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 360656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Don't allow excessive lines */ 361656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n == rctx->iobuflen) 362656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 363656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 364656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 365656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 366656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 367656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* First line */ 368656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->state == OHS_FIRSTLINE) 369656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 370656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (parse_http_line1((char *)rctx->iobuf)) 371656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 372656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_HEADERS; 373656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_line; 374656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 375656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 376656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 377656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 378656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 379656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 380656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 381656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 382656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 383656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Look for blank line: end of headers */ 384656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for (p = rctx->iobuf; *p; p++) 385656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 386656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if ((*p != '\r') && (*p != '\n')) 387656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project break; 388656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 389656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p) 390656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_line; 391656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 392656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_HEADER; 393656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 394656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 395656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 396656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Fall thru */ 397656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 398656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 399656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_HEADER: 40043c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom /* Now reading ASN1 header: can read at least 2 bytes which 40143c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * is enough for ASN1 SEQUENCE header and either length field 40243c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * or at least the length of the length field. 403656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project */ 404656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 40543c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom if (n < 2) 406656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 407656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 408656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Check it is an ASN1 SEQUENCE */ 409656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p++ != (V_ASN1_SEQUENCE|V_ASN1_CONSTRUCTED)) 410656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 411656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 412656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 413656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 414656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 415656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Check out length field */ 416656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*p & 0x80) 417656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 41843c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom /* If MSB set on initial length octet we can now 41943c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom * always read 6 octets: make sure we have them. 42043c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom */ 42143c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom if (n < 6) 42243c12e3d4f9bbbbd4a8ba7b149686437514bc6b6Brian Carlstrom goto next_io; 423656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = *p & 0x7F; 424656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Not NDEF or excessive length */ 425656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (!n || (n > 4)) 426656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 427656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 428656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 429656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 430656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project p++; 431656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len = 0; 432656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project for (i = 0; i < n; i++) 433656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 434656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len <<= 8; 435656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len |= *p++; 436656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 437656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 438656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rctx->asn1_len > OCSP_MAX_REQUEST_LENGTH) 439656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 440656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 441656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 442656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 443656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 444656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len += n + 2; 445656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 446656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project else 447656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->asn1_len = *p + 2; 448656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 449656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ASN1_CONTENT; 450656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 451656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project /* Fall thru */ 452656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 453656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_ASN1_CONTENT: 454656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project n = BIO_get_mem_data(rctx->mem, &p); 455656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (n < (int)rctx->asn1_len) 456656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project goto next_io; 457656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 458656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 459656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project *presp = d2i_OCSP_RESPONSE(NULL, &p, rctx->asn1_len); 460656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (*presp) 461656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 462656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_DONE; 463656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 464656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 465656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 466656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rctx->state = OHS_ERROR; 467656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 468656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 469656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project break; 470656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 471656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project case OHS_DONE: 472656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 1; 473656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 474656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 475656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 476656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 477656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 478656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return 0; 479656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 480656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 481656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 482656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 483656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project/* Blocking OCSP request handler: now a special case of non-blocking I/O */ 484656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 485656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source ProjectOCSP_RESPONSE *OCSP_sendreq_bio(BIO *b, char *path, OCSP_REQUEST *req) 486656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 487656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_RESPONSE *resp = NULL; 488656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX *ctx; 489656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project int rv; 490656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 491656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project ctx = OCSP_sendreq_new(b, path, req, -1); 492656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 493656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project do 494656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project { 495656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project rv = OCSP_sendreq_nbio(&resp, ctx); 496656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } while ((rv == -1) && BIO_should_retry(b)); 497656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 498656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project OCSP_REQ_CTX_free(ctx); 499656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 500656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project if (rv) 501656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return resp; 502656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project 503656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project return NULL; 504656d9c7f52f88b3a3daccafa7655dec086c4756eThe Android Open Source Project } 505