2 /* Written by Dr Stephen N Henson (shenson@bigfoot.com) for the OpenSSL
5 /* ====================================================================
6 * Copyright (c) 1999 The OpenSSL Project. All rights reserved.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
12 * 1. Redistributions of source code must retain the above copyright
13 * notice, this list of conditions and the following disclaimer.
15 * 2. Redistributions in binary form must reproduce the above copyright
16 * notice, this list of conditions and the following disclaimer in
17 * the documentation and/or other materials provided with the
20 * 3. All advertising materials mentioning features or use of this
21 * software must display the following acknowledgment:
22 * "This product includes software developed by the OpenSSL Project
23 * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
25 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26 * endorse or promote products derived from this software without
27 * prior written permission. For written permission, please contact
28 * licensing@OpenSSL.org.
30 * 5. Products derived from this software may not be called "OpenSSL"
31 * nor may "OpenSSL" appear in their names without prior written
32 * permission of the OpenSSL Project.
34 * 6. Redistributions of any form whatsoever must retain the following
36 * "This product includes software developed by the OpenSSL Project
37 * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
39 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
43 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50 * OF THE POSSIBILITY OF SUCH DAMAGE.
51 * ====================================================================
53 * This product includes cryptographic software written by Eric Young
54 * (eay@cryptsoft.com). This product includes software written by Tim
55 * Hudson (tjh@cryptsoft.com).
62 #include <openssl/asn1.h>
63 #include <openssl/asn1_mac.h>
64 #include <openssl/conf.h>
65 #include <openssl/x509v3.h>
67 static STACK_OF(CONF_VALUE
) *i2v_BASIC_CONSTRAINTS(X509V3_EXT_METHOD
*method
, BASIC_CONSTRAINTS
*bcons
, STACK_OF(CONF_VALUE
) *extlist
);
68 static BASIC_CONSTRAINTS
*v2i_BASIC_CONSTRAINTS(X509V3_EXT_METHOD
*method
, X509V3_CTX
*ctx
, STACK_OF(CONF_VALUE
) *values
);
70 X509V3_EXT_METHOD v3_bcons
= {
71 NID_basic_constraints
, 0,
72 (X509V3_EXT_NEW
)BASIC_CONSTRAINTS_new
,
73 (X509V3_EXT_FREE
)BASIC_CONSTRAINTS_free
,
74 (X509V3_EXT_D2I
)d2i_BASIC_CONSTRAINTS
,
75 (X509V3_EXT_I2D
)i2d_BASIC_CONSTRAINTS
,
77 (X509V3_EXT_I2V
)i2v_BASIC_CONSTRAINTS
,
78 (X509V3_EXT_V2I
)v2i_BASIC_CONSTRAINTS
,
84 int i2d_BASIC_CONSTRAINTS(BASIC_CONSTRAINTS
*a
, unsigned char **pp
)
87 if(a
->ca
) M_ASN1_I2D_len (a
->ca
, i2d_ASN1_BOOLEAN
);
88 M_ASN1_I2D_len (a
->pathlen
, i2d_ASN1_INTEGER
);
90 M_ASN1_I2D_seq_total();
92 if (a
->ca
) M_ASN1_I2D_put (a
->ca
, i2d_ASN1_BOOLEAN
);
93 M_ASN1_I2D_put (a
->pathlen
, i2d_ASN1_INTEGER
);
97 BASIC_CONSTRAINTS
*BASIC_CONSTRAINTS_new(void)
99 BASIC_CONSTRAINTS
*ret
=NULL
;
101 M_ASN1_New_Malloc(ret
, BASIC_CONSTRAINTS
);
105 M_ASN1_New_Error(ASN1_F_BASIC_CONSTRAINTS_NEW
);
108 BASIC_CONSTRAINTS
*d2i_BASIC_CONSTRAINTS(BASIC_CONSTRAINTS
**a
,
109 unsigned char **pp
, long length
)
111 M_ASN1_D2I_vars(a
,BASIC_CONSTRAINTS
*,BASIC_CONSTRAINTS_new
);
113 M_ASN1_D2I_start_sequence();
114 if((M_ASN1_next
& (~V_ASN1_CONSTRUCTED
)) ==
115 (V_ASN1_UNIVERSAL
|V_ASN1_BOOLEAN
) ) {
116 M_ASN1_D2I_get_int (ret
->ca
, d2i_ASN1_BOOLEAN
);
118 M_ASN1_D2I_get_opt (ret
->pathlen
, d2i_ASN1_INTEGER
, V_ASN1_INTEGER
);
119 M_ASN1_D2I_Finish(a
, BASIC_CONSTRAINTS_free
, ASN1_F_D2I_BASIC_CONSTRAINTS
);
122 void BASIC_CONSTRAINTS_free(BASIC_CONSTRAINTS
*a
)
124 if (a
== NULL
) return;
125 M_ASN1_INTEGER_free (a
->pathlen
);
129 static STACK_OF(CONF_VALUE
) *i2v_BASIC_CONSTRAINTS(X509V3_EXT_METHOD
*method
,
130 BASIC_CONSTRAINTS
*bcons
, STACK_OF(CONF_VALUE
) *extlist
)
132 X509V3_add_value_bool("CA", bcons
->ca
, &extlist
);
133 X509V3_add_value_int("pathlen", bcons
->pathlen
, &extlist
);
137 static BASIC_CONSTRAINTS
*v2i_BASIC_CONSTRAINTS(X509V3_EXT_METHOD
*method
,
138 X509V3_CTX
*ctx
, STACK_OF(CONF_VALUE
) *values
)
140 BASIC_CONSTRAINTS
*bcons
=NULL
;
143 if(!(bcons
= BASIC_CONSTRAINTS_new())) {
144 X509V3err(X509V3_F_V2I_BASIC_CONSTRAINTS
, ERR_R_MALLOC_FAILURE
);
147 for(i
= 0; i
< sk_CONF_VALUE_num(values
); i
++) {
148 val
= sk_CONF_VALUE_value(values
, i
);
149 if(!strcmp(val
->name
, "CA")) {
150 if(!X509V3_get_value_bool(val
, &bcons
->ca
)) goto err
;
151 } else if(!strcmp(val
->name
, "pathlen")) {
152 if(!X509V3_get_value_int(val
, &bcons
->pathlen
)) goto err
;
154 X509V3err(X509V3_F_V2I_BASIC_CONSTRAINTS
, X509V3_R_INVALID_NAME
);
155 X509V3_conf_err(val
);
161 BASIC_CONSTRAINTS_free(bcons
);