1 /* $OpenBSD: ts_req_utils.c,v 1.6 2018/05/13 15:04:05 tb Exp $ */
2 /* Written by Zoltan Glozik (zglozik@stones.com) for the OpenSSL
3  * project 2002.
4  */
5 /* ====================================================================
6  * Copyright (c) 2006 The OpenSSL Project.  All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  *
12  * 1. Redistributions of source code must retain the above copyright
13  *    notice, this list of conditions and the following disclaimer.
14  *
15  * 2. Redistributions in binary form must reproduce the above copyright
16  *    notice, this list of conditions and the following disclaimer in
17  *    the documentation and/or other materials provided with the
18  *    distribution.
19  *
20  * 3. All advertising materials mentioning features or use of this
21  *    software must display the following acknowledgment:
22  *    "This product includes software developed by the OpenSSL Project
23  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24  *
25  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26  *    endorse or promote products derived from this software without
27  *    prior written permission. For written permission, please contact
28  *    licensing@OpenSSL.org.
29  *
30  * 5. Products derived from this software may not be called "OpenSSL"
31  *    nor may "OpenSSL" appear in their names without prior written
32  *    permission of the OpenSSL Project.
33  *
34  * 6. Redistributions of any form whatsoever must retain the following
35  *    acknowledgment:
36  *    "This product includes software developed by the OpenSSL Project
37  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38  *
39  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50  * OF THE POSSIBILITY OF SUCH DAMAGE.
51  * ====================================================================
52  *
53  * This product includes cryptographic software written by Eric Young
54  * (eay@cryptsoft.com).  This product includes software written by Tim
55  * Hudson (tjh@cryptsoft.com).
56  *
57  */
58 
59 #include <stdio.h>
60 
61 #include <openssl/err.h>
62 #include <openssl/objects.h>
63 #include <openssl/ts.h>
64 #include <openssl/x509v3.h>
65 
66 int
67 TS_REQ_set_version(TS_REQ *a, long version)
68 {
69 	return ASN1_INTEGER_set(a->version, version);
70 }
71 
72 long
73 TS_REQ_get_version(const TS_REQ *a)
74 {
75 	return ASN1_INTEGER_get(a->version);
76 }
77 
78 int
79 TS_REQ_set_msg_imprint(TS_REQ *a, TS_MSG_IMPRINT *msg_imprint)
80 {
81 	TS_MSG_IMPRINT *new_msg_imprint;
82 
83 	if (a->msg_imprint == msg_imprint)
84 		return 1;
85 	new_msg_imprint = TS_MSG_IMPRINT_dup(msg_imprint);
86 	if (new_msg_imprint == NULL) {
87 		TSerror(ERR_R_MALLOC_FAILURE);
88 		return 0;
89 	}
90 	TS_MSG_IMPRINT_free(a->msg_imprint);
91 	a->msg_imprint = new_msg_imprint;
92 	return 1;
93 }
94 
95 TS_MSG_IMPRINT *
96 TS_REQ_get_msg_imprint(TS_REQ *a)
97 {
98 	return a->msg_imprint;
99 }
100 
101 int
102 TS_MSG_IMPRINT_set_algo(TS_MSG_IMPRINT *a, X509_ALGOR *alg)
103 {
104 	X509_ALGOR *new_alg;
105 
106 	if (a->hash_algo == alg)
107 		return 1;
108 	new_alg = X509_ALGOR_dup(alg);
109 	if (new_alg == NULL) {
110 		TSerror(ERR_R_MALLOC_FAILURE);
111 		return 0;
112 	}
113 	X509_ALGOR_free(a->hash_algo);
114 	a->hash_algo = new_alg;
115 	return 1;
116 }
117 
118 X509_ALGOR *
119 TS_MSG_IMPRINT_get_algo(TS_MSG_IMPRINT *a)
120 {
121 	return a->hash_algo;
122 }
123 
124 int
125 TS_MSG_IMPRINT_set_msg(TS_MSG_IMPRINT *a, unsigned char *d, int len)
126 {
127 	return ASN1_OCTET_STRING_set(a->hashed_msg, d, len);
128 }
129 
130 ASN1_OCTET_STRING *
131 TS_MSG_IMPRINT_get_msg(TS_MSG_IMPRINT *a)
132 {
133 	return a->hashed_msg;
134 }
135 
136 int
137 TS_REQ_set_policy_id(TS_REQ *a, const ASN1_OBJECT *policy)
138 {
139 	ASN1_OBJECT *new_policy;
140 
141 	if (a->policy_id == policy)
142 		return 1;
143 	new_policy = OBJ_dup(policy);
144 	if (new_policy == NULL) {
145 		TSerror(ERR_R_MALLOC_FAILURE);
146 		return 0;
147 	}
148 	ASN1_OBJECT_free(a->policy_id);
149 	a->policy_id = new_policy;
150 	return 1;
151 }
152 
153 ASN1_OBJECT *
154 TS_REQ_get_policy_id(TS_REQ *a)
155 {
156 	return a->policy_id;
157 }
158 
159 int
160 TS_REQ_set_nonce(TS_REQ *a, const ASN1_INTEGER *nonce)
161 {
162 	ASN1_INTEGER *new_nonce;
163 
164 	if (a->nonce == nonce)
165 		return 1;
166 	new_nonce = ASN1_INTEGER_dup(nonce);
167 	if (new_nonce == NULL) {
168 		TSerror(ERR_R_MALLOC_FAILURE);
169 		return 0;
170 	}
171 	ASN1_INTEGER_free(a->nonce);
172 	a->nonce = new_nonce;
173 	return 1;
174 }
175 
176 const ASN1_INTEGER *
177 TS_REQ_get_nonce(const TS_REQ *a)
178 {
179 	return a->nonce;
180 }
181 
182 int
183 TS_REQ_set_cert_req(TS_REQ *a, int cert_req)
184 {
185 	a->cert_req = cert_req ? 0xFF : 0x00;
186 	return 1;
187 }
188 
189 int
190 TS_REQ_get_cert_req(const TS_REQ *a)
191 {
192 	return a->cert_req ? 1 : 0;
193 }
194 
195 STACK_OF(X509_EXTENSION) *TS_REQ_get_exts(TS_REQ *a)
196 {
197 	return a->extensions;
198 }
199 
200 void
201 TS_REQ_ext_free(TS_REQ *a)
202 {
203 	if (!a)
204 		return;
205 	sk_X509_EXTENSION_pop_free(a->extensions, X509_EXTENSION_free);
206 	a->extensions = NULL;
207 }
208 
209 int
210 TS_REQ_get_ext_count(TS_REQ *a)
211 {
212 	return X509v3_get_ext_count(a->extensions);
213 }
214 
215 int
216 TS_REQ_get_ext_by_NID(TS_REQ *a, int nid, int lastpos)
217 {
218 	return X509v3_get_ext_by_NID(a->extensions, nid, lastpos);
219 }
220 
221 int
222 TS_REQ_get_ext_by_OBJ(TS_REQ *a, const ASN1_OBJECT *obj, int lastpos)
223 {
224 	return X509v3_get_ext_by_OBJ(a->extensions, obj, lastpos);
225 }
226 
227 int
228 TS_REQ_get_ext_by_critical(TS_REQ *a, int crit, int lastpos)
229 {
230 	return X509v3_get_ext_by_critical(a->extensions, crit, lastpos);
231 }
232 
233 X509_EXTENSION *
234 TS_REQ_get_ext(TS_REQ *a, int loc)
235 {
236 	return X509v3_get_ext(a->extensions, loc);
237 }
238 
239 X509_EXTENSION *
240 TS_REQ_delete_ext(TS_REQ *a, int loc)
241 {
242 	return X509v3_delete_ext(a->extensions, loc);
243 }
244 
245 int
246 TS_REQ_add_ext(TS_REQ *a, X509_EXTENSION *ex, int loc)
247 {
248 	return X509v3_add_ext(&a->extensions, ex, loc) != NULL;
249 }
250 
251 void *
252 TS_REQ_get_ext_d2i(TS_REQ *a, int nid, int *crit, int *idx)
253 {
254 	return X509V3_get_d2i(a->extensions, nid, crit, idx);
255 }
256