/src/openssl31/crypto/x509/t_crl.c
Line | Count | Source (jump to first uncovered line) |
1 | | /* |
2 | | * Copyright 1999-2021 The OpenSSL Project Authors. All Rights Reserved. |
3 | | * |
4 | | * Licensed under the Apache License 2.0 (the "License"). You may not use |
5 | | * this file except in compliance with the License. You can obtain a copy |
6 | | * in the file LICENSE in the source distribution or at |
7 | | * https://www.openssl.org/source/license.html |
8 | | */ |
9 | | |
10 | | #include <stdio.h> |
11 | | #include "internal/cryptlib.h" |
12 | | #include <openssl/buffer.h> |
13 | | #include <openssl/bn.h> |
14 | | #include <openssl/objects.h> |
15 | | #include <openssl/x509.h> |
16 | | #include <openssl/x509v3.h> |
17 | | |
18 | | #ifndef OPENSSL_NO_STDIO |
19 | | int X509_CRL_print_fp(FILE *fp, X509_CRL *x) |
20 | 0 | { |
21 | 0 | BIO *b; |
22 | 0 | int ret; |
23 | |
|
24 | 0 | if ((b = BIO_new(BIO_s_file())) == NULL) { |
25 | 0 | ERR_raise(ERR_LIB_X509, ERR_R_BUF_LIB); |
26 | 0 | return 0; |
27 | 0 | } |
28 | 0 | BIO_set_fp(b, fp, BIO_NOCLOSE); |
29 | 0 | ret = X509_CRL_print(b, x); |
30 | 0 | BIO_free(b); |
31 | 0 | return ret; |
32 | 0 | } |
33 | | #endif |
34 | | |
35 | | int X509_CRL_print(BIO *out, X509_CRL *x) |
36 | 28.7k | { |
37 | 28.7k | return X509_CRL_print_ex(out, x, XN_FLAG_COMPAT); |
38 | 28.7k | } |
39 | | |
40 | | int X509_CRL_print_ex(BIO *out, X509_CRL *x, unsigned long nmflag) |
41 | 21.2k | { |
42 | 21.2k | STACK_OF(X509_REVOKED) *rev; |
43 | 21.2k | X509_REVOKED *r; |
44 | 21.2k | const X509_ALGOR *sig_alg; |
45 | 21.2k | const ASN1_BIT_STRING *sig; |
46 | 21.2k | long l; |
47 | 21.2k | int i; |
48 | | |
49 | 21.2k | BIO_printf(out, "Certificate Revocation List (CRL):\n"); |
50 | 21.2k | l = X509_CRL_get_version(x); |
51 | 21.2k | if (l >= X509_CRL_VERSION_1 && l <= X509_CRL_VERSION_2) |
52 | 20.2k | BIO_printf(out, "%8sVersion %ld (0x%lx)\n", "", l + 1, (unsigned long)l); |
53 | 1.04k | else |
54 | 1.04k | BIO_printf(out, "%8sVersion unknown (%ld)\n", "", l); |
55 | 21.2k | X509_CRL_get0_signature(x, &sig, &sig_alg); |
56 | 21.2k | BIO_puts(out, " "); |
57 | 21.2k | X509_signature_print(out, sig_alg, NULL); |
58 | 21.2k | BIO_printf(out, "%8sIssuer: ", ""); |
59 | 21.2k | X509_NAME_print_ex(out, X509_CRL_get_issuer(x), 0, nmflag); |
60 | 21.2k | BIO_puts(out, "\n"); |
61 | 21.2k | BIO_printf(out, "%8sLast Update: ", ""); |
62 | 21.2k | ASN1_TIME_print(out, X509_CRL_get0_lastUpdate(x)); |
63 | 21.2k | BIO_printf(out, "\n%8sNext Update: ", ""); |
64 | 21.2k | if (X509_CRL_get0_nextUpdate(x)) |
65 | 445 | ASN1_TIME_print(out, X509_CRL_get0_nextUpdate(x)); |
66 | 20.8k | else |
67 | 20.8k | BIO_printf(out, "NONE"); |
68 | 21.2k | BIO_printf(out, "\n"); |
69 | | |
70 | 21.2k | X509V3_extensions_print(out, "CRL extensions", |
71 | 21.2k | X509_CRL_get0_extensions(x), 0, 8); |
72 | | |
73 | 21.2k | rev = X509_CRL_get_REVOKED(x); |
74 | | |
75 | 21.2k | if (sk_X509_REVOKED_num(rev) > 0) |
76 | 1.30k | BIO_printf(out, "Revoked Certificates:\n"); |
77 | 19.9k | else |
78 | 19.9k | BIO_printf(out, "No Revoked Certificates.\n"); |
79 | | |
80 | 57.4k | for (i = 0; i < sk_X509_REVOKED_num(rev); i++) { |
81 | 36.1k | r = sk_X509_REVOKED_value(rev, i); |
82 | 36.1k | BIO_printf(out, " Serial Number: "); |
83 | 36.1k | i2a_ASN1_INTEGER(out, X509_REVOKED_get0_serialNumber(r)); |
84 | 36.1k | BIO_printf(out, "\n Revocation Date: "); |
85 | 36.1k | ASN1_TIME_print(out, X509_REVOKED_get0_revocationDate(r)); |
86 | 36.1k | BIO_printf(out, "\n"); |
87 | 36.1k | X509V3_extensions_print(out, "CRL entry extensions", |
88 | 36.1k | X509_REVOKED_get0_extensions(r), 0, 8); |
89 | 36.1k | } |
90 | 21.2k | X509_signature_print(out, sig_alg, sig); |
91 | | |
92 | 21.2k | return 1; |
93 | | |
94 | 21.2k | } |