2001-11-13 12:50:14 +00:00
|
|
|
/* certdump.c - Dump a certificate for debugging
|
|
|
|
* Copyright (C) 2001 Free Software Foundation, Inc.
|
|
|
|
*
|
|
|
|
* This file is part of GnuPG.
|
|
|
|
*
|
|
|
|
* GnuPG is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
|
|
|
* the Free Software Foundation; either version 2 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* GnuPG is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License
|
|
|
|
* along with this program; if not, write to the Free Software
|
|
|
|
* Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include <config.h>
|
|
|
|
#include <stdio.h>
|
|
|
|
#include <stdlib.h>
|
|
|
|
#include <string.h>
|
|
|
|
#include <errno.h>
|
|
|
|
#include <unistd.h>
|
|
|
|
#include <time.h>
|
|
|
|
#include <assert.h>
|
|
|
|
|
|
|
|
#include <gcrypt.h>
|
|
|
|
#include <ksba.h>
|
|
|
|
|
|
|
|
#include "gpgsm.h"
|
|
|
|
#include "keydb.h"
|
|
|
|
|
2001-12-20 13:25:08 +00:00
|
|
|
/* print the first element of an S-Expression */
|
|
|
|
void
|
|
|
|
gpgsm_dump_serial (KsbaConstSexp p)
|
2001-11-13 12:50:14 +00:00
|
|
|
{
|
2001-12-18 17:37:48 +00:00
|
|
|
unsigned long n;
|
|
|
|
KsbaConstSexp endp;
|
2001-11-13 12:50:14 +00:00
|
|
|
|
|
|
|
if (!p)
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("none");
|
2001-12-20 13:25:08 +00:00
|
|
|
else if (*p != '(')
|
|
|
|
log_printf ("ERROR - not an S-expression");
|
2001-11-13 12:50:14 +00:00
|
|
|
else
|
|
|
|
{
|
2001-12-20 13:25:08 +00:00
|
|
|
p++;
|
2001-12-18 17:37:48 +00:00
|
|
|
n = strtoul (p, (char**)&endp, 10);
|
|
|
|
p = endp;
|
|
|
|
if (*p!=':')
|
2001-12-20 13:25:08 +00:00
|
|
|
log_printf ("ERROR - invalid S-expression");
|
2001-12-18 17:37:48 +00:00
|
|
|
else
|
|
|
|
{
|
|
|
|
for (p++; n; n--, p++)
|
|
|
|
log_printf ("%02X", *p);
|
|
|
|
}
|
2001-11-13 12:50:14 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2001-12-18 17:37:48 +00:00
|
|
|
|
|
|
|
|
2001-12-20 13:25:08 +00:00
|
|
|
void
|
|
|
|
gpgsm_dump_time (time_t t)
|
2001-11-13 12:50:14 +00:00
|
|
|
{
|
|
|
|
|
|
|
|
if (!t)
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("none");
|
2001-11-13 12:50:14 +00:00
|
|
|
else if ( t == (time_t)(-1) )
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("error");
|
2001-11-13 12:50:14 +00:00
|
|
|
else
|
|
|
|
{
|
|
|
|
struct tm *tp;
|
|
|
|
|
|
|
|
tp = gmtime (&t);
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("%04d-%02d-%02d %02d:%02d:%02d",
|
|
|
|
1900+tp->tm_year, tp->tm_mon+1, tp->tm_mday,
|
|
|
|
tp->tm_hour, tp->tm_min, tp->tm_sec);
|
2001-11-13 12:50:14 +00:00
|
|
|
assert (!tp->tm_isdst);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2001-12-20 13:25:08 +00:00
|
|
|
|
2002-01-23 13:40:38 +00:00
|
|
|
void
|
|
|
|
gpgsm_dump_string (const char *string)
|
2001-11-13 12:50:14 +00:00
|
|
|
{
|
2002-01-23 13:40:38 +00:00
|
|
|
|
|
|
|
if (!string)
|
|
|
|
log_printf ("[error]");
|
2001-11-13 12:50:14 +00:00
|
|
|
else
|
2002-01-23 13:40:38 +00:00
|
|
|
{
|
|
|
|
const unsigned char *s;
|
|
|
|
|
|
|
|
for (s=string; *s; s++)
|
|
|
|
{
|
|
|
|
if (*s < ' ' || (*s >= 0x7f && *s <= 0xa0))
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
if (!*s && *string != '[')
|
|
|
|
log_printf ("%s", string);
|
|
|
|
else
|
|
|
|
{
|
|
|
|
log_printf ( "[ ");
|
|
|
|
log_printhex (NULL, string, strlen (string));
|
|
|
|
log_printf ( " ]");
|
|
|
|
}
|
|
|
|
}
|
2001-11-13 12:50:14 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
void
|
2001-11-16 17:56:23 +00:00
|
|
|
gpgsm_dump_cert (const char *text, KsbaCert cert)
|
2001-11-13 12:50:14 +00:00
|
|
|
{
|
2001-12-18 17:37:48 +00:00
|
|
|
KsbaSexp sexp;
|
2001-11-13 12:50:14 +00:00
|
|
|
unsigned char *p;
|
|
|
|
char *dn;
|
|
|
|
time_t t;
|
|
|
|
|
2001-11-16 17:56:23 +00:00
|
|
|
log_debug ("BEGIN Certificate `%s':\n", text? text:"");
|
|
|
|
if (cert)
|
2001-11-13 12:50:14 +00:00
|
|
|
{
|
2001-12-18 17:37:48 +00:00
|
|
|
sexp = ksba_cert_get_serial (cert);
|
2002-01-23 13:40:38 +00:00
|
|
|
log_debug (" serial: ");
|
2001-12-20 13:25:08 +00:00
|
|
|
gpgsm_dump_serial (sexp);
|
2001-12-18 17:37:48 +00:00
|
|
|
ksba_free (sexp);
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("\n");
|
|
|
|
|
|
|
|
t = ksba_cert_get_validity (cert, 0);
|
|
|
|
log_debug (" notBefore: ");
|
2001-12-20 13:25:08 +00:00
|
|
|
gpgsm_dump_time (t);
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("\n");
|
|
|
|
t = ksba_cert_get_validity (cert, 1);
|
2002-01-23 13:40:38 +00:00
|
|
|
log_debug (" notAfter: ");
|
2001-12-20 13:25:08 +00:00
|
|
|
gpgsm_dump_time (t);
|
2001-11-16 17:56:23 +00:00
|
|
|
log_printf ("\n");
|
|
|
|
|
2001-12-13 13:11:40 +00:00
|
|
|
dn = ksba_cert_get_issuer (cert, 0);
|
2002-01-23 13:40:38 +00:00
|
|
|
log_debug (" issuer: ");
|
|
|
|
gpgsm_dump_string (dn);
|
2001-11-16 17:56:23 +00:00
|
|
|
ksba_free (dn);
|
|
|
|
log_printf ("\n");
|
2001-11-13 12:50:14 +00:00
|
|
|
|
2001-12-13 13:11:40 +00:00
|
|
|
dn = ksba_cert_get_subject (cert, 0);
|
2002-01-23 13:40:38 +00:00
|
|
|
log_debug (" subject: ");
|
|
|
|
gpgsm_dump_string (dn);
|
2001-11-16 17:56:23 +00:00
|
|
|
ksba_free (dn);
|
|
|
|
log_printf ("\n");
|
2001-11-13 12:50:14 +00:00
|
|
|
|
2001-11-20 18:28:53 +00:00
|
|
|
log_debug (" hash algo: %s\n", ksba_cert_get_digest_algo (cert));
|
2001-11-13 12:50:14 +00:00
|
|
|
|
2001-11-16 17:56:23 +00:00
|
|
|
p = gpgsm_get_fingerprint_string (cert, 0);
|
|
|
|
log_debug (" SHA1 Fingerprint: %s\n", p);
|
|
|
|
xfree (p);
|
|
|
|
}
|
|
|
|
log_debug ("END Certificate\n");
|
2001-11-13 12:50:14 +00:00
|
|
|
}
|
2001-12-20 13:25:08 +00:00
|
|
|
|
|
|
|
|
2002-01-23 13:40:38 +00:00
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|