1999-02-02 01:19:22 +00:00
|
|
|
/*
|
2018-02-23 09:53:12 +01:00
|
|
|
* Copyright (C) Internet Systems Consortium, Inc. ("ISC")
|
2000-08-01 01:33:37 +00:00
|
|
|
*
|
2021-06-03 08:37:05 +02:00
|
|
|
* SPDX-License-Identifier: MPL-2.0
|
|
|
|
*
|
2016-06-27 14:56:38 +10:00
|
|
|
* This Source Code Form is subject to the terms of the Mozilla Public
|
|
|
|
* License, v. 2.0. If a copy of the MPL was not distributed with this
|
2020-09-14 16:20:40 -07:00
|
|
|
* file, you can obtain one at https://mozilla.org/MPL/2.0/.
|
2018-02-23 09:53:12 +01:00
|
|
|
*
|
|
|
|
* See the COPYRIGHT file distributed with this work for additional
|
|
|
|
* information regarding copyright ownership.
|
1999-02-02 01:19:22 +00:00
|
|
|
*/
|
|
|
|
|
2005-04-27 04:57:32 +00:00
|
|
|
/* RFC2538 */
|
1999-02-02 01:19:22 +00:00
|
|
|
|
1999-05-05 00:19:04 +00:00
|
|
|
#ifndef RDATA_GENERIC_CERT_37_C
|
|
|
|
#define RDATA_GENERIC_CERT_37_C
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-04-07 03:54:52 +00:00
|
|
|
#define RRTYPE_CERT_ATTRIBUTES (0)
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
fromtext_cert(ARGS_FROMTEXT) {
|
|
|
|
isc_token_t token;
|
1999-02-05 00:05:46 +00:00
|
|
|
dns_secalg_t secalg;
|
2020-02-13 14:44:37 -08:00
|
|
|
dns_cert_t cert;
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(type == dns_rdatatype_cert);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2001-03-16 22:53:20 +00:00
|
|
|
UNUSED(type);
|
2000-03-16 01:43:42 +00:00
|
|
|
UNUSED(rdclass);
|
|
|
|
UNUSED(origin);
|
2004-02-27 20:41:51 +00:00
|
|
|
UNUSED(options);
|
2001-07-16 03:06:53 +00:00
|
|
|
UNUSED(callbacks);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Cert type.
|
|
|
|
*/
|
2000-11-08 01:56:15 +00:00
|
|
|
RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
|
2018-04-17 08:29:14 -07:00
|
|
|
false));
|
2001-03-06 22:11:18 +00:00
|
|
|
RETTOK(dns_cert_fromtext(&cert, &token.value.as_textregion));
|
1999-02-05 00:05:46 +00:00
|
|
|
RETERR(uint16_tobuffer(cert, target));
|
2000-08-01 01:33:37 +00:00
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Key tag.
|
|
|
|
*/
|
2000-11-08 01:56:15 +00:00
|
|
|
RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_number,
|
2018-04-17 08:29:14 -07:00
|
|
|
false));
|
2020-02-13 21:48:23 +01:00
|
|
|
if (token.value.as_ulong > 0xffffU) {
|
2001-03-06 22:11:18 +00:00
|
|
|
RETTOK(ISC_R_RANGE);
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
1999-02-02 01:19:22 +00:00
|
|
|
RETERR(uint16_tobuffer(token.value.as_ulong, target));
|
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Algorithm.
|
|
|
|
*/
|
2000-11-08 01:56:15 +00:00
|
|
|
RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
|
2018-04-17 08:29:14 -07:00
|
|
|
false));
|
2001-03-06 22:11:18 +00:00
|
|
|
RETTOK(dns_secalg_fromtext(&secalg, &token.value.as_textregion));
|
1999-02-05 00:05:46 +00:00
|
|
|
RETERR(mem_tobuffer(target, &secalg, 1));
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2019-01-04 15:20:04 +11:00
|
|
|
return (isc_base64_tobuffer(lexer, target, -2));
|
1999-02-02 01:19:22 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
totext_cert(ARGS_TOTEXT) {
|
1999-02-02 01:19:22 +00:00
|
|
|
isc_region_t sr;
|
2020-02-13 14:44:37 -08:00
|
|
|
char buf[sizeof("64000 ")];
|
1999-02-02 01:19:22 +00:00
|
|
|
unsigned int n;
|
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
2000-10-25 05:44:10 +00:00
|
|
|
REQUIRE(rdata->length != 0);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-03-16 01:43:42 +00:00
|
|
|
UNUSED(tctx);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
|
|
|
dns_rdata_toregion(rdata, &sr);
|
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Type.
|
|
|
|
*/
|
1999-02-02 01:19:22 +00:00
|
|
|
n = uint16_fromregion(&sr);
|
|
|
|
isc_region_consume(&sr, 2);
|
1999-10-08 21:22:27 +00:00
|
|
|
RETERR(dns_cert_totext((dns_cert_t)n, target));
|
1999-02-02 01:19:22 +00:00
|
|
|
RETERR(str_totext(" ", target));
|
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Key tag.
|
|
|
|
*/
|
1999-02-02 01:19:22 +00:00
|
|
|
n = uint16_fromregion(&sr);
|
|
|
|
isc_region_consume(&sr, 2);
|
2017-10-03 14:54:19 +11:00
|
|
|
snprintf(buf, sizeof(buf), "%u ", n);
|
1999-02-02 01:19:22 +00:00
|
|
|
RETERR(str_totext(buf, target));
|
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Algorithm.
|
|
|
|
*/
|
1999-02-05 00:05:46 +00:00
|
|
|
RETERR(dns_secalg_totext(sr.base[0], target));
|
|
|
|
isc_region_consume(&sr, 1);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-05-15 21:14:38 +00:00
|
|
|
/*
|
|
|
|
* Cert.
|
|
|
|
*/
|
2020-02-13 21:48:23 +01:00
|
|
|
if ((tctx->flags & DNS_STYLEFLAG_MULTILINE) != 0) {
|
1999-06-08 20:41:31 +00:00
|
|
|
RETERR(str_totext(" (", target));
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
1999-06-08 10:35:23 +00:00
|
|
|
RETERR(str_totext(tctx->linebreak, target));
|
2020-02-13 21:48:23 +01:00
|
|
|
if (tctx->width == 0) { /* No splitting */
|
2011-03-05 19:39:07 +00:00
|
|
|
RETERR(isc_base64_totext(&sr, 60, "", target));
|
2020-02-13 21:48:23 +01:00
|
|
|
} else {
|
2020-02-12 13:59:18 +01:00
|
|
|
RETERR(isc_base64_totext(&sr, tctx->width - 2, tctx->linebreak,
|
|
|
|
target));
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
|
|
|
if ((tctx->flags & DNS_STYLEFLAG_MULTILINE) != 0) {
|
1999-06-08 20:41:31 +00:00
|
|
|
RETERR(str_totext(" )", target));
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
2000-04-06 22:03:35 +00:00
|
|
|
return (ISC_R_SUCCESS);
|
1999-02-02 01:19:22 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
fromwire_cert(ARGS_FROMWIRE) {
|
1999-02-02 01:19:22 +00:00
|
|
|
isc_region_t sr;
|
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(type == dns_rdatatype_cert);
|
2000-08-01 01:33:37 +00:00
|
|
|
|
2001-03-16 22:53:20 +00:00
|
|
|
UNUSED(type);
|
2000-03-16 01:43:42 +00:00
|
|
|
UNUSED(rdclass);
|
|
|
|
UNUSED(dctx);
|
2004-02-27 20:41:51 +00:00
|
|
|
UNUSED(options);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
103. [func] libisc buffer API changes for <isc/buffer.h>:
Added:
isc_buffer_base(b) (pointer)
isc_buffer_current(b) (pointer)
isc_buffer_active(b) (pointer)
isc_buffer_used(b) (pointer)
isc_buffer_length(b) (int)
isc_buffer_usedlength(b) (int)
isc_buffer_consumedlength(b) (int)
isc_buffer_remaininglength(b) (int)
isc_buffer_activelength(b) (int)
isc_buffer_availablelength(b) (int)
Removed:
ISC_BUFFER_USEDCOUNT(b)
ISC_BUFFER_AVAILABLECOUNT(b)
isc_buffer_type(b)
Changed names:
isc_buffer_used(b, r) ->
isc_buffer_usedregion(b, r)
isc_buffer_available(b, r) ->
isc_buffer_available_region(b, r)
isc_buffer_consumed(b, r) ->
isc_buffer_consumedregion(b, r)
isc_buffer_active(b, r) ->
isc_buffer_activeregion(b, r)
isc_buffer_remaining(b, r) ->
isc_buffer_remainingregion(b, r)
Buffer types were removed, so the ISC_BUFFERTYPE_*
macros are no more, and the type argument to
isc_buffer_init and isc_buffer_allocate were removed.
isc_buffer_putstr is now void (instead of isc_result_t)
and requires that the caller ensure that there
is enough available buffer space for the string.
2000-04-27 00:03:12 +00:00
|
|
|
isc_buffer_activeregion(source, &sr);
|
2020-08-13 13:38:49 +10:00
|
|
|
if (sr.length < 6) {
|
2000-04-06 22:03:35 +00:00
|
|
|
return (ISC_R_UNEXPECTEDEND);
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
1999-02-02 01:19:22 +00:00
|
|
|
|
|
|
|
isc_buffer_forward(source, sr.length);
|
|
|
|
return (mem_tobuffer(target, sr.base, sr.length));
|
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
towire_cert(ARGS_TOWIRE) {
|
1999-02-02 01:19:22 +00:00
|
|
|
isc_region_t sr;
|
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
2000-10-25 05:44:10 +00:00
|
|
|
REQUIRE(rdata->length != 0);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-03-16 01:43:42 +00:00
|
|
|
UNUSED(cctx);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
|
|
|
dns_rdata_toregion(rdata, &sr);
|
|
|
|
return (mem_tobuffer(target, sr.base, sr.length));
|
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static int
|
2020-02-13 14:44:37 -08:00
|
|
|
compare_cert(ARGS_COMPARE) {
|
1999-02-02 01:19:22 +00:00
|
|
|
isc_region_t r1;
|
|
|
|
isc_region_t r2;
|
|
|
|
|
|
|
|
REQUIRE(rdata1->type == rdata2->type);
|
1999-08-02 22:18:31 +00:00
|
|
|
REQUIRE(rdata1->rdclass == rdata2->rdclass);
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata1->type == dns_rdatatype_cert);
|
2000-10-25 05:44:10 +00:00
|
|
|
REQUIRE(rdata1->length != 0);
|
|
|
|
REQUIRE(rdata2->length != 0);
|
1999-02-02 01:19:22 +00:00
|
|
|
|
|
|
|
dns_rdata_toregion(rdata1, &r1);
|
|
|
|
dns_rdata_toregion(rdata2, &r2);
|
2002-01-05 07:05:28 +00:00
|
|
|
return (isc_region_compare(&r1, &r2));
|
1999-02-02 01:19:22 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
fromstruct_cert(ARGS_FROMSTRUCT) {
|
2000-05-22 12:38:12 +00:00
|
|
|
dns_rdata_cert_t *cert = source;
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(type == dns_rdatatype_cert);
|
2019-09-27 10:40:51 +02:00
|
|
|
REQUIRE(cert != NULL);
|
2000-05-22 12:38:12 +00:00
|
|
|
REQUIRE(cert->common.rdtype == type);
|
|
|
|
REQUIRE(cert->common.rdclass == rdclass);
|
2000-08-01 01:33:37 +00:00
|
|
|
|
2001-03-16 22:53:20 +00:00
|
|
|
UNUSED(type);
|
2000-12-01 01:40:59 +00:00
|
|
|
UNUSED(rdclass);
|
|
|
|
|
2000-05-22 12:38:12 +00:00
|
|
|
RETERR(uint16_tobuffer(cert->type, target));
|
|
|
|
RETERR(uint16_tobuffer(cert->key_tag, target));
|
|
|
|
RETERR(uint8_tobuffer(cert->algorithm, target));
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2000-05-22 12:38:12 +00:00
|
|
|
return (mem_tobuffer(target, cert->certificate, cert->length));
|
1999-02-02 01:19:22 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
tostruct_cert(ARGS_TOSTRUCT) {
|
2000-05-05 05:50:14 +00:00
|
|
|
dns_rdata_cert_t *cert = target;
|
2020-02-13 14:44:37 -08:00
|
|
|
isc_region_t region;
|
1999-02-02 01:19:22 +00:00
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
2019-09-27 10:40:51 +02:00
|
|
|
REQUIRE(cert != NULL);
|
2000-10-25 05:44:10 +00:00
|
|
|
REQUIRE(rdata->length != 0);
|
2000-04-28 01:24:18 +00:00
|
|
|
|
2000-05-05 05:50:14 +00:00
|
|
|
cert->common.rdclass = rdata->rdclass;
|
|
|
|
cert->common.rdtype = rdata->type;
|
|
|
|
ISC_LINK_INIT(&cert->common, link);
|
|
|
|
|
|
|
|
dns_rdata_toregion(rdata, ®ion);
|
|
|
|
|
|
|
|
cert->type = uint16_fromregion(®ion);
|
|
|
|
isc_region_consume(®ion, 2);
|
|
|
|
cert->key_tag = uint16_fromregion(®ion);
|
|
|
|
isc_region_consume(®ion, 2);
|
|
|
|
cert->algorithm = uint8_fromregion(®ion);
|
|
|
|
isc_region_consume(®ion, 1);
|
|
|
|
cert->length = region.length;
|
|
|
|
|
2001-06-21 04:00:47 +00:00
|
|
|
cert->certificate = mem_maybedup(mctx, region.base, region.length);
|
2000-05-05 05:50:14 +00:00
|
|
|
cert->mctx = mctx;
|
|
|
|
return (ISC_R_SUCCESS);
|
1999-02-02 01:19:22 +00:00
|
|
|
}
|
1999-05-07 03:24:15 +00:00
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static void
|
2020-02-13 14:44:37 -08:00
|
|
|
freestruct_cert(ARGS_FREESTRUCT) {
|
2000-06-01 18:26:56 +00:00
|
|
|
dns_rdata_cert_t *cert = source;
|
2000-05-05 05:50:14 +00:00
|
|
|
|
2000-06-01 18:26:56 +00:00
|
|
|
REQUIRE(cert != NULL);
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(cert->common.rdtype == dns_rdatatype_cert);
|
2000-04-28 01:24:18 +00:00
|
|
|
|
2020-02-13 21:48:23 +01:00
|
|
|
if (cert->mctx == NULL) {
|
2000-05-05 05:50:14 +00:00
|
|
|
return;
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
2000-05-05 05:50:14 +00:00
|
|
|
|
2020-02-13 21:48:23 +01:00
|
|
|
if (cert->certificate != NULL) {
|
2000-05-05 05:50:14 +00:00
|
|
|
isc_mem_free(cert->mctx, cert->certificate);
|
2020-02-13 21:48:23 +01:00
|
|
|
}
|
2000-05-05 05:50:14 +00:00
|
|
|
cert->mctx = NULL;
|
1999-05-07 03:24:15 +00:00
|
|
|
}
|
1999-08-02 22:18:31 +00:00
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
additionaldata_cert(ARGS_ADDLDATA) {
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
1999-08-02 22:18:31 +00:00
|
|
|
|
2000-04-28 01:24:18 +00:00
|
|
|
UNUSED(rdata);
|
2019-07-05 16:20:20 +10:00
|
|
|
UNUSED(owner);
|
2000-03-16 01:43:42 +00:00
|
|
|
UNUSED(add);
|
|
|
|
UNUSED(arg);
|
1999-08-02 22:18:31 +00:00
|
|
|
|
2000-04-06 22:03:35 +00:00
|
|
|
return (ISC_R_SUCCESS);
|
1999-08-02 22:18:31 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static isc_result_t
|
2020-02-13 14:44:37 -08:00
|
|
|
digest_cert(ARGS_DIGEST) {
|
1999-08-31 22:05:55 +00:00
|
|
|
isc_region_t r;
|
|
|
|
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
1999-08-31 22:05:55 +00:00
|
|
|
|
|
|
|
dns_rdata_toregion(rdata, &r);
|
|
|
|
|
|
|
|
return ((digest)(arg, &r));
|
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static bool
|
2020-02-13 14:44:37 -08:00
|
|
|
checkowner_cert(ARGS_CHECKOWNER) {
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(type == dns_rdatatype_cert);
|
2004-02-27 20:41:51 +00:00
|
|
|
|
|
|
|
UNUSED(name);
|
|
|
|
UNUSED(type);
|
|
|
|
UNUSED(rdclass);
|
|
|
|
UNUSED(wildcard);
|
|
|
|
|
2018-04-17 08:29:14 -07:00
|
|
|
return (true);
|
2004-02-27 20:41:51 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static bool
|
2020-02-13 14:44:37 -08:00
|
|
|
checknames_cert(ARGS_CHECKNAMES) {
|
2015-08-17 12:23:35 +05:30
|
|
|
REQUIRE(rdata->type == dns_rdatatype_cert);
|
2004-02-27 20:41:51 +00:00
|
|
|
|
|
|
|
UNUSED(rdata);
|
|
|
|
UNUSED(owner);
|
|
|
|
UNUSED(bad);
|
|
|
|
|
2018-04-17 08:29:14 -07:00
|
|
|
return (true);
|
2004-02-27 20:41:51 +00:00
|
|
|
}
|
|
|
|
|
2021-10-11 13:43:12 +02:00
|
|
|
static int
|
2020-02-13 14:44:37 -08:00
|
|
|
casecompare_cert(ARGS_COMPARE) {
|
2009-12-04 21:09:34 +00:00
|
|
|
return (compare_cert(rdata1, rdata2));
|
|
|
|
}
|
2020-02-12 13:59:18 +01:00
|
|
|
#endif /* RDATA_GENERIC_CERT_37_C */
|