Blame tests/x509_altname.c

Packit Service 4684c1
/*
Packit Service 4684c1
 * Copyright (C) 2006-2012 Free Software Foundation, Inc.
Packit Service 4684c1
 * Author: Simon Josefsson, Howard Chu
Packit Service 4684c1
 *
Packit Service 4684c1
 * This file is part of GnuTLS.
Packit Service 4684c1
 *
Packit Service 4684c1
 * GnuTLS is free software; you can redistribute it and/or modify it
Packit Service 4684c1
 * under the terms of the GNU General Public License as published by
Packit Service 4684c1
 * the Free Software Foundation; either version 3 of the License, or
Packit Service 4684c1
 * (at your option) any later version.
Packit Service 4684c1
 *
Packit Service 4684c1
 * GnuTLS is distributed in the hope that it will be useful, but
Packit Service 4684c1
 * WITHOUT ANY WARRANTY; without even the implied warranty of
Packit Service 4684c1
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit Service 4684c1
 * General Public License for more details.
Packit Service 4684c1
 *
Packit Service 4684c1
 * You should have received a copy of the GNU General Public License
Packit Service 4684c1
 * along with GnuTLS; if not, write to the Free Software Foundation,
Packit Service 4684c1
 * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
Packit Service 4684c1
 */
Packit Service 4684c1
Packit Service 4684c1
#ifdef HAVE_CONFIG_H
Packit Service 4684c1
#include "config.h"
Packit Service 4684c1
#endif
Packit Service 4684c1
Packit Service 4684c1
#include <stdio.h>
Packit Service 4684c1
Packit Service 4684c1
#include <gnutls/gnutls.h>
Packit Service 4684c1
#include <gnutls/x509.h>
Packit Service 4684c1
#include "utils.h"
Packit Service 4684c1
Packit Service 4684c1
static char pem[] =
Packit Service 4684c1
    "-----BEGIN CERTIFICATE-----\n"
Packit Service 4684c1
    "MIIE6zCCA9OgAwIBAgIBdjANBgkqhkiG9w0BAQUFADBQMQswCQYDVQQGEwJTRTEf\n"
Packit Service 4684c1
    "MB0GA1UEChMWU3RvY2tob2xtcyB1bml2ZXJzaXRldDEgMB4GA1UEAxMXU3RvY2to\n"
Packit Service 4684c1
    "b2xtIFVuaXZlcnNpdHkgQ0EwHhcNMDYwMzIyMDkxNTI4WhcNMDcwMzIyMDkxNTI4\n"
Packit Service 4684c1
    "WjBDMQswCQYDVQQGEwJTRTEfMB0GA1UEChMWU3RvY2tob2xtcyB1bml2ZXJzaXRl\n"
Packit Service 4684c1
    "dDETMBEGA1UEAxMKc2lwMS5zdS5zZTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkC\n"
Packit Service 4684c1
    "gYEArUzXTD36ZK7CwZJH/faUNTcdaqM7JyiZsfrO703d7cT/bJ3wKxT8trOOh/Ou\n"
Packit Service 4684c1
    "WwgGFX2+r7ykun3aIUXUuD13Yle/yHqH/4g9vWX7UeFCBlSI0tAxnlqt0QqlPgSd\n"
Packit Service 4684c1
    "GLHcoO4PPyjon9jj0A/zpJGZHiRUCooo63YqE9MYfr5HBfkCAwEAAaOCAl8wggJb\n"
Packit Service 4684c1
    "MAsGA1UdDwQEAwIF4DAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwHQYD\n"
Packit Service 4684c1
    "VR0OBBYEFDpcXNHMLJ7fc/c72BtZseq4MDXFMH8GA1UdIwR4MHaAFJ4uMLo32VFE\n"
Packit Service 4684c1
    "yZ2/GCHxvX7utYZIoVukWTBXMQswCQYDVQQGEwJTRTEYMBYGA1UEChMPVW1lYSBV\n"
Packit Service 4684c1
    "bml2ZXJzaXR5MRMwEQYDVQQLEwpTd1VQS0ktUENBMRkwFwYDVQQDExBTd1VQS0kg\n"
Packit Service 4684c1
    "UG9saWN5IENBggEQMDIGA1UdHwQrMCkwJ6AloCOGIWh0dHA6Ly9jYS5zdS5zZS8y\n"
Packit Service 4684c1
    "MDA1LTEvY3JsLXYyLmNybDB5BgNVHSAEcjBwMG4GCCqFcCsCAQEBMGIwHwYIKwYB\n"
Packit Service 4684c1
    "BQUHAgEWE2h0dHA6Ly9jYS5zdS5zZS9DUFMwPwYIKwYBBQUHAgIwMxoxTGltaXRl\n"
Packit Service 4684c1
    "ZCBMaWFiaWxpdHksIHNlZSBodHRwOi8vd3d3LnN3dXBraS5zdS5zZS9DUDAkBgNV\n"
Packit Service 4684c1
    "HRIEHTAbgQhjYUBzdS5zZYYPaHR0cDovL2NhLnN1LnNlMIG3BgNVHREEga8wgayC\n"
Packit Service 4684c1
    "F2luY29taW5ncHJveHkuc2lwLnN1LnNlghhpbmNvbWluZ3Byb3h5MS5zaXAuc3Uu\n"
Packit Service 4684c1
    "c2WCF291dGdvaW5ncHJveHkuc2lwLnN1LnNlghhvdXRnb2luZ3Byb3h5MS5zaXAu\n"
Packit Service 4684c1
    "c3Uuc2WCDW91dC5zaXAuc3Uuc2WCE2FwcHNlcnZlci5zaXAuc3Uuc2WCFGFwcHNl\n"
Packit Service 4684c1
    "cnZlcjEuc2lwLnN1LnNlggpzaXAxLnN1LnNlMA0GCSqGSIb3DQEBBQUAA4IBAQAR\n"
Packit Service 4684c1
    "FYg7ytcph0E7WmvM44AN/8qru7tRX6aSFWrjLyVr/1Wk4prCK4y5JpfNw5dh9Z8f\n"
Packit Service 4684c1
    "/gyFsr1iFsb6fS3nJTTd3fVlWRfcNCGIx5g8KuSb3u6f7VznkGOeiRMRESQc1G8B\n"
Packit Service 4684c1
    "eh0zbdZS7BYO2g9EKlbGST5PwQnc4g9K7pqPyKSNVkzb60Nujg/+qYje7MCcN+ZR\n"
Packit Service 4684c1
    "nUBo6U2NZ06/QEUFm+uUIhZ8IGM1gLehC7Q3G4+d4c38CDJxQnSPOgWiXuSvhhQm\n"
Packit Service 4684c1
    "KDsbrKzRaeBRh5eEJbTkA8Dp0Emb0UrkRVhixeg97stxUcATAjdGljJ9MLnuHXnI\n"
Packit Service 4684c1
    "7ihGdUfg5q/105vpsQpO\n" "-----END CERTIFICATE-----\n";
Packit Service 4684c1
Packit Service 4684c1
#define MAX_DATA_SIZE 1024
Packit Service 4684c1
Packit Service 4684c1
void doit(void)
Packit Service 4684c1
{
Packit Service 4684c1
	int ret;
Packit Service 4684c1
	gnutls_datum_t derCert = { (void *) pem, sizeof(pem) };
Packit Service 4684c1
	gnutls_x509_crt_t cert;
Packit Service 4684c1
	size_t data_len = MAX_DATA_SIZE;
Packit Service 4684c1
	char data[MAX_DATA_SIZE];
Packit Service 4684c1
	unsigned int critical = 0;
Packit Service 4684c1
	int alt_name_count = 0;
Packit Service 4684c1
Packit Service 4684c1
	ret = global_init();
Packit Service 4684c1
	if (ret < 0)
Packit Service 4684c1
		fail("init %d\n", ret);
Packit Service 4684c1
Packit Service 4684c1
	ret = gnutls_x509_crt_init(&cert);
Packit Service 4684c1
	if (ret < 0)
Packit Service 4684c1
		fail("crt_init %d\n", ret);
Packit Service 4684c1
Packit Service 4684c1
	ret = gnutls_x509_crt_import(cert, &derCert, GNUTLS_X509_FMT_PEM);
Packit Service 4684c1
	if (ret < 0)
Packit Service 4684c1
		fail("crt_import %d\n", ret);
Packit Service 4684c1
Packit Service 4684c1
	for (alt_name_count = 0;; ++alt_name_count) {
Packit Service 4684c1
		ret =
Packit Service 4684c1
		    gnutls_x509_crt_get_issuer_alt_name(cert,
Packit Service 4684c1
							alt_name_count,
Packit Service 4684c1
							data, &data_len,
Packit Service 4684c1
							&critical);
Packit Service 4684c1
		if (ret == GNUTLS_E_REQUESTED_DATA_NOT_AVAILABLE)
Packit Service 4684c1
			break;
Packit Service 4684c1
Packit Service 4684c1
		if (ret < 0)
Packit Service 4684c1
			fail("get_issuer_alt_name: %d\n", ret);
Packit Service 4684c1
Packit Service 4684c1
		// TODO: print out / check results
Packit Service 4684c1
		if (GNUTLS_SAN_URI == ret) {
Packit Service 4684c1
			if (strcmp(data, "http://ca.su.se") != 0) {
Packit Service 4684c1
				fail("unexpected issuer GNUTLS_SAN_URI: %s\n", data);
Packit Service 4684c1
			}
Packit Service 4684c1
		} else if (GNUTLS_SAN_RFC822NAME == ret) {
Packit Service 4684c1
			if (strcmp(data, "ca@su.se") != 0) {
Packit Service 4684c1
				fail("unexpected issuer GNUTLS_SAN_RFC822NAME: %s\n", data);
Packit Service 4684c1
			}
Packit Service 4684c1
		} else {
Packit Service 4684c1
			fail("unexpected alt name type: %d\n", ret);
Packit Service 4684c1
		}
Packit Service 4684c1
		data_len = MAX_DATA_SIZE;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	if (alt_name_count != 2) {
Packit Service 4684c1
		fail("unexpected number of alt names: %i\n",
Packit Service 4684c1
		     alt_name_count);
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	if (debug)
Packit Service 4684c1
		success("done\n");
Packit Service 4684c1
Packit Service 4684c1
	gnutls_x509_crt_deinit(cert);
Packit Service 4684c1
	gnutls_global_deinit();
Packit Service 4684c1
}