1 /* $OpenBSD: x509_ext.c,v 1.16 2023/02/16 08:38:17 tb Exp $ */ 2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) 3 * All rights reserved. 4 * 5 * This package is an SSL implementation written 6 * by Eric Young (eay@cryptsoft.com). 7 * The implementation was written so as to conform with Netscapes SSL. 8 * 9 * This library is free for commercial and non-commercial use as long as 10 * the following conditions are aheared to. The following conditions 11 * apply to all code found in this distribution, be it the RC4, RSA, 12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation 13 * included with this distribution is covered by the same copyright terms 14 * except that the holder is Tim Hudson (tjh@cryptsoft.com). 15 * 16 * Copyright remains Eric Young's, and as such any Copyright notices in 17 * the code are not to be removed. 18 * If this package is used in a product, Eric Young should be given attribution 19 * as the author of the parts of the library used. 20 * This can be in the form of a textual message at program startup or 21 * in documentation (online or textual) provided with the package. 22 * 23 * Redistribution and use in source and binary forms, with or without 24 * modification, are permitted provided that the following conditions 25 * are met: 26 * 1. Redistributions of source code must retain the copyright 27 * notice, this list of conditions and the following disclaimer. 28 * 2. Redistributions in binary form must reproduce the above copyright 29 * notice, this list of conditions and the following disclaimer in the 30 * documentation and/or other materials provided with the distribution. 31 * 3. All advertising materials mentioning features or use of this software 32 * must display the following acknowledgement: 33 * "This product includes cryptographic software written by 34 * Eric Young (eay@cryptsoft.com)" 35 * The word 'cryptographic' can be left out if the rouines from the library 36 * being used are not cryptographic related :-). 37 * 4. If you include any Windows specific code (or a derivative thereof) from 38 * the apps directory (application code) you must include an acknowledgement: 39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)" 40 * 41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND 42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE 45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 51 * SUCH DAMAGE. 52 * 53 * The licence and distribution terms for any publically available version or 54 * derivative of this code cannot be changed. i.e. this code cannot simply be 55 * copied and put under another distribution licence 56 * [including the GNU Public Licence.] 57 */ 58 59 #include <stdio.h> 60 61 #include <openssl/asn1.h> 62 #include <openssl/evp.h> 63 #include <openssl/objects.h> 64 #include <openssl/stack.h> 65 #include <openssl/x509.h> 66 #include <openssl/x509v3.h> 67 68 #include "x509_local.h" 69 70 int 71 X509_CRL_get_ext_count(const X509_CRL *x) 72 { 73 return (X509v3_get_ext_count(x->crl->extensions)); 74 } 75 LCRYPTO_ALIAS(X509_CRL_get_ext_count); 76 77 int 78 X509_CRL_get_ext_by_NID(const X509_CRL *x, int nid, int lastpos) 79 { 80 return (X509v3_get_ext_by_NID(x->crl->extensions, nid, lastpos)); 81 } 82 LCRYPTO_ALIAS(X509_CRL_get_ext_by_NID); 83 84 int 85 X509_CRL_get_ext_by_OBJ(const X509_CRL *x, const ASN1_OBJECT *obj, int lastpos) 86 { 87 return (X509v3_get_ext_by_OBJ(x->crl->extensions, obj, lastpos)); 88 } 89 LCRYPTO_ALIAS(X509_CRL_get_ext_by_OBJ); 90 91 int 92 X509_CRL_get_ext_by_critical(const X509_CRL *x, int crit, int lastpos) 93 { 94 return (X509v3_get_ext_by_critical(x->crl->extensions, crit, lastpos)); 95 } 96 LCRYPTO_ALIAS(X509_CRL_get_ext_by_critical); 97 98 X509_EXTENSION * 99 X509_CRL_get_ext(const X509_CRL *x, int loc) 100 { 101 return (X509v3_get_ext(x->crl->extensions, loc)); 102 } 103 LCRYPTO_ALIAS(X509_CRL_get_ext); 104 105 X509_EXTENSION * 106 X509_CRL_delete_ext(X509_CRL *x, int loc) 107 { 108 return (X509v3_delete_ext(x->crl->extensions, loc)); 109 } 110 LCRYPTO_ALIAS(X509_CRL_delete_ext); 111 112 void * 113 X509_CRL_get_ext_d2i(const X509_CRL *x, int nid, int *crit, int *idx) 114 { 115 return X509V3_get_d2i(x->crl->extensions, nid, crit, idx); 116 } 117 LCRYPTO_ALIAS(X509_CRL_get_ext_d2i); 118 119 int 120 X509_CRL_add1_ext_i2d(X509_CRL *x, int nid, void *value, int crit, 121 unsigned long flags) 122 { 123 return X509V3_add1_i2d(&x->crl->extensions, nid, value, crit, flags); 124 } 125 LCRYPTO_ALIAS(X509_CRL_add1_ext_i2d); 126 127 int 128 X509_CRL_add_ext(X509_CRL *x, X509_EXTENSION *ex, int loc) 129 { 130 return (X509v3_add_ext(&(x->crl->extensions), ex, loc) != NULL); 131 } 132 LCRYPTO_ALIAS(X509_CRL_add_ext); 133 134 int 135 X509_get_ext_count(const X509 *x) 136 { 137 return (X509v3_get_ext_count(x->cert_info->extensions)); 138 } 139 LCRYPTO_ALIAS(X509_get_ext_count); 140 141 int 142 X509_get_ext_by_NID(const X509 *x, int nid, int lastpos) 143 { 144 return (X509v3_get_ext_by_NID(x->cert_info->extensions, nid, lastpos)); 145 } 146 LCRYPTO_ALIAS(X509_get_ext_by_NID); 147 148 int 149 X509_get_ext_by_OBJ(const X509 *x, const ASN1_OBJECT *obj, int lastpos) 150 { 151 return (X509v3_get_ext_by_OBJ(x->cert_info->extensions, obj, lastpos)); 152 } 153 LCRYPTO_ALIAS(X509_get_ext_by_OBJ); 154 155 int 156 X509_get_ext_by_critical(const X509 *x, int crit, int lastpos) 157 { 158 return (X509v3_get_ext_by_critical(x->cert_info->extensions, crit, 159 lastpos)); 160 } 161 LCRYPTO_ALIAS(X509_get_ext_by_critical); 162 163 X509_EXTENSION * 164 X509_get_ext(const X509 *x, int loc) 165 { 166 return (X509v3_get_ext(x->cert_info->extensions, loc)); 167 } 168 LCRYPTO_ALIAS(X509_get_ext); 169 170 X509_EXTENSION * 171 X509_delete_ext(X509 *x, int loc) 172 { 173 return (X509v3_delete_ext(x->cert_info->extensions, loc)); 174 } 175 LCRYPTO_ALIAS(X509_delete_ext); 176 177 int 178 X509_add_ext(X509 *x, X509_EXTENSION *ex, int loc) 179 { 180 return (X509v3_add_ext(&(x->cert_info->extensions), ex, loc) != NULL); 181 } 182 LCRYPTO_ALIAS(X509_add_ext); 183 184 void * 185 X509_get_ext_d2i(const X509 *x, int nid, int *crit, int *idx) 186 { 187 return X509V3_get_d2i(x->cert_info->extensions, nid, crit, idx); 188 } 189 LCRYPTO_ALIAS(X509_get_ext_d2i); 190 191 int 192 X509_add1_ext_i2d(X509 *x, int nid, void *value, int crit, unsigned long flags) 193 { 194 return X509V3_add1_i2d(&x->cert_info->extensions, nid, value, crit, 195 flags); 196 } 197 LCRYPTO_ALIAS(X509_add1_ext_i2d); 198 199 int 200 X509_REVOKED_get_ext_count(const X509_REVOKED *x) 201 { 202 return (X509v3_get_ext_count(x->extensions)); 203 } 204 LCRYPTO_ALIAS(X509_REVOKED_get_ext_count); 205 206 int 207 X509_REVOKED_get_ext_by_NID(const X509_REVOKED *x, int nid, int lastpos) 208 { 209 return (X509v3_get_ext_by_NID(x->extensions, nid, lastpos)); 210 } 211 LCRYPTO_ALIAS(X509_REVOKED_get_ext_by_NID); 212 213 int 214 X509_REVOKED_get_ext_by_OBJ(const X509_REVOKED *x, const ASN1_OBJECT *obj, 215 int lastpos) 216 { 217 return (X509v3_get_ext_by_OBJ(x->extensions, obj, lastpos)); 218 } 219 LCRYPTO_ALIAS(X509_REVOKED_get_ext_by_OBJ); 220 221 int 222 X509_REVOKED_get_ext_by_critical(const X509_REVOKED *x, int crit, int lastpos) 223 { 224 return (X509v3_get_ext_by_critical(x->extensions, crit, lastpos)); 225 } 226 LCRYPTO_ALIAS(X509_REVOKED_get_ext_by_critical); 227 228 X509_EXTENSION * 229 X509_REVOKED_get_ext(const X509_REVOKED *x, int loc) 230 { 231 return (X509v3_get_ext(x->extensions, loc)); 232 } 233 LCRYPTO_ALIAS(X509_REVOKED_get_ext); 234 235 X509_EXTENSION * 236 X509_REVOKED_delete_ext(X509_REVOKED *x, int loc) 237 { 238 return (X509v3_delete_ext(x->extensions, loc)); 239 } 240 LCRYPTO_ALIAS(X509_REVOKED_delete_ext); 241 242 int 243 X509_REVOKED_add_ext(X509_REVOKED *x, X509_EXTENSION *ex, int loc) 244 { 245 return (X509v3_add_ext(&(x->extensions), ex, loc) != NULL); 246 } 247 LCRYPTO_ALIAS(X509_REVOKED_add_ext); 248 249 void * 250 X509_REVOKED_get_ext_d2i(const X509_REVOKED *x, int nid, int *crit, int *idx) 251 { 252 return X509V3_get_d2i(x->extensions, nid, crit, idx); 253 } 254 LCRYPTO_ALIAS(X509_REVOKED_get_ext_d2i); 255 256 int 257 X509_REVOKED_add1_ext_i2d(X509_REVOKED *x, int nid, void *value, int crit, 258 unsigned long flags) 259 { 260 return X509V3_add1_i2d(&x->extensions, nid, value, crit, flags); 261 } 262 LCRYPTO_ALIAS(X509_REVOKED_add1_ext_i2d); 263