1 /* $OpenBSD: ocsp_err.c,v 1.9 2022/07/12 14:42:49 kn Exp $ */
2 /* ====================================================================
3  * Copyright (c) 1999-2006 The OpenSSL Project.  All rights reserved.
4  *
5  * Redistribution and use in source and binary forms, with or without
6  * modification, are permitted provided that the following conditions
7  * are met:
8  *
9  * 1. Redistributions of source code must retain the above copyright
10  *    notice, this list of conditions and the following disclaimer.
11  *
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in
14  *    the documentation and/or other materials provided with the
15  *    distribution.
16  *
17  * 3. All advertising materials mentioning features or use of this
18  *    software must display the following acknowledgment:
19  *    "This product includes software developed by the OpenSSL Project
20  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
21  *
22  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
23  *    endorse or promote products derived from this software without
24  *    prior written permission. For written permission, please contact
25  *    openssl-core@OpenSSL.org.
26  *
27  * 5. Products derived from this software may not be called "OpenSSL"
28  *    nor may "OpenSSL" appear in their names without prior written
29  *    permission of the OpenSSL Project.
30  *
31  * 6. Redistributions of any form whatsoever must retain the following
32  *    acknowledgment:
33  *    "This product includes software developed by the OpenSSL Project
34  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
35  *
36  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
37  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
38  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
39  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
40  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
41  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
42  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
43  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
44  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
45  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
46  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
47  * OF THE POSSIBILITY OF SUCH DAMAGE.
48  * ====================================================================
49  *
50  * This product includes cryptographic software written by Eric Young
51  * (eay@cryptsoft.com).  This product includes software written by Tim
52  * Hudson (tjh@cryptsoft.com).
53  *
54  */
55 
56 #include <stdio.h>
57 
58 #include <openssl/opensslconf.h>
59 
60 #include <openssl/err.h>
61 #include <openssl/ocsp.h>
62 
63 #ifndef OPENSSL_NO_ERR
64 
65 #define ERR_FUNC(func) ERR_PACK(ERR_LIB_OCSP,func,0)
66 #define ERR_REASON(reason) ERR_PACK(ERR_LIB_OCSP,0,reason)
67 
68 static ERR_STRING_DATA OCSP_str_functs[]= {
69 	{ERR_FUNC(0xfff), "CRYPTO_internal"},
70 	{0, NULL}
71 };
72 
73 static ERR_STRING_DATA OCSP_str_reasons[]= {
74 	{ERR_REASON(OCSP_R_BAD_DATA)             , "bad data"},
75 	{ERR_REASON(OCSP_R_CERTIFICATE_VERIFY_ERROR), "certificate verify error"},
76 	{ERR_REASON(OCSP_R_DIGEST_ERR)           , "digest err"},
77 	{ERR_REASON(OCSP_R_ERROR_IN_NEXTUPDATE_FIELD), "error in nextupdate field"},
78 	{ERR_REASON(OCSP_R_ERROR_IN_THISUPDATE_FIELD), "error in thisupdate field"},
79 	{ERR_REASON(OCSP_R_ERROR_PARSING_URL)    , "error parsing url"},
80 	{ERR_REASON(OCSP_R_MISSING_OCSPSIGNING_USAGE), "missing ocspsigning usage"},
81 	{ERR_REASON(OCSP_R_NEXTUPDATE_BEFORE_THISUPDATE), "nextupdate before thisupdate"},
82 	{ERR_REASON(OCSP_R_NOT_BASIC_RESPONSE)   , "not basic response"},
83 	{ERR_REASON(OCSP_R_NO_CERTIFICATES_IN_CHAIN), "no certificates in chain"},
84 	{ERR_REASON(OCSP_R_NO_CONTENT)           , "no content"},
85 	{ERR_REASON(OCSP_R_NO_PUBLIC_KEY)        , "no public key"},
86 	{ERR_REASON(OCSP_R_NO_RESPONSE_DATA)     , "no response data"},
87 	{ERR_REASON(OCSP_R_NO_REVOKED_TIME)      , "no revoked time"},
88 	{ERR_REASON(OCSP_R_PRIVATE_KEY_DOES_NOT_MATCH_CERTIFICATE), "private key does not match certificate"},
89 	{ERR_REASON(OCSP_R_REQUEST_NOT_SIGNED)   , "request not signed"},
90 	{ERR_REASON(OCSP_R_RESPONSE_CONTAINS_NO_REVOCATION_DATA), "response contains no revocation data"},
91 	{ERR_REASON(OCSP_R_ROOT_CA_NOT_TRUSTED)  , "root ca not trusted"},
92 	{ERR_REASON(OCSP_R_SERVER_READ_ERROR)    , "server read error"},
93 	{ERR_REASON(OCSP_R_SERVER_RESPONSE_ERROR), "server response error"},
94 	{ERR_REASON(OCSP_R_SERVER_RESPONSE_PARSE_ERROR), "server response parse error"},
95 	{ERR_REASON(OCSP_R_SERVER_WRITE_ERROR)   , "server write error"},
96 	{ERR_REASON(OCSP_R_SIGNATURE_FAILURE)    , "signature failure"},
97 	{ERR_REASON(OCSP_R_SIGNER_CERTIFICATE_NOT_FOUND), "signer certificate not found"},
98 	{ERR_REASON(OCSP_R_STATUS_EXPIRED)       , "status expired"},
99 	{ERR_REASON(OCSP_R_STATUS_NOT_YET_VALID) , "status not yet valid"},
100 	{ERR_REASON(OCSP_R_STATUS_TOO_OLD)       , "status too old"},
101 	{ERR_REASON(OCSP_R_UNKNOWN_MESSAGE_DIGEST), "unknown message digest"},
102 	{ERR_REASON(OCSP_R_UNKNOWN_NID)          , "unknown nid"},
103 	{ERR_REASON(OCSP_R_UNSUPPORTED_REQUESTORNAME_TYPE), "unsupported requestorname type"},
104 	{0, NULL}
105 };
106 
107 #endif
108 
109 void
110 ERR_load_OCSP_strings(void)
111 {
112 #ifndef OPENSSL_NO_ERR
113 	if (ERR_func_error_string(OCSP_str_functs[0].error) == NULL) {
114 		ERR_load_strings(0, OCSP_str_functs);
115 		ERR_load_strings(0, OCSP_str_reasons);
116 	}
117 #endif
118 }
119