You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 

134 lines
4.7 KiB

  1. /* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL
  2. * project 1999. */
  3. /* ====================================================================
  4. * Copyright (c) 1999 The OpenSSL Project. All rights reserved.
  5. *
  6. * Redistribution and use in source and binary forms, with or without
  7. * modification, are permitted provided that the following conditions
  8. * are met:
  9. *
  10. * 1. Redistributions of source code must retain the above copyright
  11. * notice, this list of conditions and the following disclaimer.
  12. *
  13. * 2. Redistributions in binary form must reproduce the above copyright
  14. * notice, this list of conditions and the following disclaimer in
  15. * the documentation and/or other materials provided with the
  16. * distribution.
  17. *
  18. * 3. All advertising materials mentioning features or use of this
  19. * software must display the following acknowledgment:
  20. * "This product includes software developed by the OpenSSL Project
  21. * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
  22. *
  23. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  24. * endorse or promote products derived from this software without
  25. * prior written permission. For written permission, please contact
  26. * licensing@OpenSSL.org.
  27. *
  28. * 5. Products derived from this software may not be called "OpenSSL"
  29. * nor may "OpenSSL" appear in their names without prior written
  30. * permission of the OpenSSL Project.
  31. *
  32. * 6. Redistributions of any form whatsoever must retain the following
  33. * acknowledgment:
  34. * "This product includes software developed by the OpenSSL Project
  35. * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
  36. *
  37. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  38. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  39. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  40. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  41. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  42. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  43. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  44. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  45. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  46. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  47. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  48. * OF THE POSSIBILITY OF SUCH DAMAGE.
  49. * ====================================================================
  50. *
  51. * This product includes cryptographic software written by Eric Young
  52. * (eay@cryptsoft.com). This product includes software written by Tim
  53. * Hudson (tjh@cryptsoft.com). */
  54. #include <openssl/base64.h>
  55. #include <openssl/err.h>
  56. #include <openssl/mem.h>
  57. #include <openssl/x509.h>
  58. int NETSCAPE_SPKI_set_pubkey(NETSCAPE_SPKI *x, EVP_PKEY *pkey)
  59. {
  60. if ((x == NULL) || (x->spkac == NULL)) return(0);
  61. return(X509_PUBKEY_set(&(x->spkac->pubkey),pkey));
  62. }
  63. EVP_PKEY *NETSCAPE_SPKI_get_pubkey(NETSCAPE_SPKI *x)
  64. {
  65. if ((x == NULL) || (x->spkac == NULL))
  66. return(NULL);
  67. return(X509_PUBKEY_get(x->spkac->pubkey));
  68. }
  69. /* Load a Netscape SPKI from a base64 encoded string */
  70. NETSCAPE_SPKI * NETSCAPE_SPKI_b64_decode(const char *str, int len)
  71. {
  72. unsigned char *spki_der;
  73. const unsigned char *p;
  74. size_t spki_len;
  75. NETSCAPE_SPKI *spki;
  76. if (len <= 0)
  77. len = strlen(str);
  78. if (!EVP_DecodedLength(&spki_len, len)) {
  79. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_decode, X509_R_BASE64_DECODE_ERROR);
  80. return NULL;
  81. }
  82. if (!(spki_der = OPENSSL_malloc(spki_len))) {
  83. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_decode, ERR_R_MALLOC_FAILURE);
  84. return NULL;
  85. }
  86. if (!EVP_DecodeBase64(spki_der, &spki_len, spki_len, (const uint8_t *)str, len)) {
  87. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_decode, X509_R_BASE64_DECODE_ERROR);
  88. OPENSSL_free(spki_der);
  89. return NULL;
  90. }
  91. p = spki_der;
  92. spki = d2i_NETSCAPE_SPKI(NULL, &p, spki_len);
  93. OPENSSL_free(spki_der);
  94. return spki;
  95. }
  96. /* Generate a base64 encoded string from an SPKI */
  97. char * NETSCAPE_SPKI_b64_encode(NETSCAPE_SPKI *spki)
  98. {
  99. unsigned char *der_spki, *p;
  100. char *b64_str;
  101. size_t b64_len;
  102. int der_len;
  103. der_len = i2d_NETSCAPE_SPKI(spki, NULL);
  104. if (!EVP_EncodedLength(&b64_len, der_len))
  105. {
  106. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_encode, ERR_R_OVERFLOW);
  107. return NULL;
  108. }
  109. der_spki = OPENSSL_malloc(der_len);
  110. if (der_spki == NULL) {
  111. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_encode, ERR_R_MALLOC_FAILURE);
  112. return NULL;
  113. }
  114. b64_str = OPENSSL_malloc(b64_len);
  115. if (b64_str == NULL) {
  116. OPENSSL_free(der_spki);
  117. OPENSSL_PUT_ERROR(X509, NETSCAPE_SPKI_b64_encode, ERR_R_MALLOC_FAILURE);
  118. return NULL;
  119. }
  120. p = der_spki;
  121. i2d_NETSCAPE_SPKI(spki, &p);
  122. EVP_EncodeBlock((unsigned char *)b64_str, der_spki, der_len);
  123. OPENSSL_free(der_spki);
  124. return b64_str;
  125. }