Annotation of src/usr.bin/openssl/nseq.c, Revision 1.4
1.4 ! jsing 1: /* $OpenBSD: nseq.c,v 1.3 2015/07/21 16:41:34 jsing Exp $ */
1.1 jsing 2: /* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL
3: * project 1999.
4: */
5: /* ====================================================================
6: * Copyright (c) 1999 The OpenSSL Project. All rights reserved.
7: *
8: * Redistribution and use in source and binary forms, with or without
9: * modification, are permitted provided that the following conditions
10: * are met:
11: *
12: * 1. Redistributions of source code must retain the above copyright
13: * notice, this list of conditions and the following disclaimer.
14: *
15: * 2. Redistributions in binary form must reproduce the above copyright
16: * notice, this list of conditions and the following disclaimer in
17: * the documentation and/or other materials provided with the
18: * distribution.
19: *
20: * 3. All advertising materials mentioning features or use of this
21: * software must display the following acknowledgment:
22: * "This product includes software developed by the OpenSSL Project
23: * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24: *
25: * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26: * endorse or promote products derived from this software without
27: * prior written permission. For written permission, please contact
28: * licensing@OpenSSL.org.
29: *
30: * 5. Products derived from this software may not be called "OpenSSL"
31: * nor may "OpenSSL" appear in their names without prior written
32: * permission of the OpenSSL Project.
33: *
34: * 6. Redistributions of any form whatsoever must retain the following
35: * acknowledgment:
36: * "This product includes software developed by the OpenSSL Project
37: * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38: *
39: * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40: * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41: * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42: * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
43: * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44: * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45: * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46: * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47: * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48: * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49: * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50: * OF THE POSSIBILITY OF SUCH DAMAGE.
51: * ====================================================================
52: *
53: * This product includes cryptographic software written by Eric Young
54: * (eay@cryptsoft.com). This product includes software written by Tim
55: * Hudson (tjh@cryptsoft.com).
56: *
57: */
58:
59: #include <stdio.h>
60: #include <string.h>
61:
62: #include "apps.h"
63:
64: #include <openssl/err.h>
65: #include <openssl/pem.h>
66:
1.3 jsing 67: static struct {
68: char *infile;
69: char *outfile;
70: int toseq;
71: } nseq_config;
72:
73: static struct option nseq_options[] = {
74: {
75: .name = "in",
76: .argname = "file",
77: .desc = "Input file to read from (default stdin)",
78: .type = OPTION_ARG,
79: .opt.arg = &nseq_config.infile,
80: },
81: {
82: .name = "out",
83: .argname = "file",
84: .desc = "Output file to write to (default stdout)",
85: .type = OPTION_ARG,
86: .opt.arg = &nseq_config.outfile,
87: },
88: {
89: .name = "toseq",
90: .desc = "Convert certificates to Netscape certificate sequence",
91: .type = OPTION_FLAG,
92: .opt.flag = &nseq_config.toseq,
93: },
94: { NULL },
95: };
96:
97: static void
98: nseq_usage()
99: {
100: fprintf(stderr, "usage: nseq [-in file] [-out file] [-toseq]\n");
101: options_usage(nseq_options);
102: }
1.1 jsing 103:
104: int
105: nseq_main(int argc, char **argv)
106: {
107: BIO *in = NULL, *out = NULL;
108: X509 *x509 = NULL;
109: NETSCAPE_CERT_SEQUENCE *seq = NULL;
110: int i, ret = 1;
111:
1.3 jsing 112: memset(&nseq_config, 0, sizeof(nseq_config));
1.1 jsing 113:
1.3 jsing 114: if (options_parse(argc, argv, nseq_options, NULL, NULL) != 0) {
115: nseq_usage();
1.1 jsing 116: return (1);
117: }
1.3 jsing 118:
119: if (nseq_config.infile) {
120: if (!(in = BIO_new_file(nseq_config.infile, "r"))) {
1.1 jsing 121: BIO_printf(bio_err,
1.3 jsing 122: "Can't open input file %s\n", nseq_config.infile);
1.1 jsing 123: goto end;
124: }
125: } else
126: in = BIO_new_fp(stdin, BIO_NOCLOSE);
127:
1.3 jsing 128: if (nseq_config.outfile) {
129: if (!(out = BIO_new_file(nseq_config.outfile, "w"))) {
1.1 jsing 130: BIO_printf(bio_err,
1.3 jsing 131: "Can't open output file %s\n", nseq_config.outfile);
1.1 jsing 132: goto end;
133: }
134: } else {
135: out = BIO_new_fp(stdout, BIO_NOCLOSE);
136: }
1.3 jsing 137: if (nseq_config.toseq) {
1.1 jsing 138: seq = NETSCAPE_CERT_SEQUENCE_new();
139: seq->certs = sk_X509_new_null();
140: while ((x509 = PEM_read_bio_X509(in, NULL, NULL, NULL)))
141: sk_X509_push(seq->certs, x509);
142:
143: if (!sk_X509_num(seq->certs)) {
1.3 jsing 144: BIO_printf(bio_err, "Error reading certs file %s\n", nseq_config.infile);
1.1 jsing 145: ERR_print_errors(bio_err);
146: goto end;
147: }
148: PEM_write_bio_NETSCAPE_CERT_SEQUENCE(out, seq);
149: ret = 0;
150: goto end;
151: }
152: if (!(seq = PEM_read_bio_NETSCAPE_CERT_SEQUENCE(in, NULL, NULL, NULL))) {
1.3 jsing 153: BIO_printf(bio_err, "Error reading sequence file %s\n", nseq_config.infile);
1.1 jsing 154: ERR_print_errors(bio_err);
155: goto end;
156: }
157: for (i = 0; i < sk_X509_num(seq->certs); i++) {
158: x509 = sk_X509_value(seq->certs, i);
159: dump_cert_text(out, x509);
160: PEM_write_bio_X509(out, x509);
161: }
162: ret = 0;
163: end:
164: BIO_free(in);
165: BIO_free_all(out);
166: NETSCAPE_CERT_SEQUENCE_free(seq);
167:
168: return (ret);
169: }