mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-01-06 07:10:41 +00:00
82e2945ed2
CSR writing functions now start with x509write_csr_*() DER writing functions now have the context at the start instead of the end conforming to other modules.
60 lines
1.6 KiB
Plaintext
60 lines
1.6 KiB
Plaintext
/* BEGIN_HEADER */
|
|
#include <polarssl/x509write.h>
|
|
#include <polarssl/x509.h>
|
|
#include <polarssl/pem.h>
|
|
#include <polarssl/oid.h>
|
|
/* END_HEADER */
|
|
|
|
/* BEGIN_DEPENDENCIES
|
|
* depends_on:POLARSSL_X509_WRITE_C:POLARSSL_BIGNUM_C
|
|
* END_DEPENDENCIES
|
|
*/
|
|
|
|
/* BEGIN_CASE */
|
|
void x509_csr_check( char *key_file, int md_type,
|
|
char *cert_req_check_file )
|
|
{
|
|
rsa_context rsa;
|
|
pem_context pem;
|
|
x509_csr req;
|
|
unsigned char *c;
|
|
unsigned char buf[4000];
|
|
unsigned char check_buf[4000];
|
|
int ret;
|
|
size_t olen = 2000;
|
|
FILE *f;
|
|
char *subject_name = "C=NL,O=PolarSSL,CN=PolarSSL Server 1";
|
|
|
|
memset( &rsa, 0, sizeof(rsa_context) );
|
|
ret = x509parse_keyfile_rsa( &rsa, key_file, NULL );
|
|
TEST_ASSERT( ret == 0 );
|
|
if( ret != 0 )
|
|
return;
|
|
|
|
x509write_csr_init( &req );
|
|
x509write_csr_set_md_alg( &req, md_type );
|
|
x509write_csr_set_rsa_key( &req, &rsa );
|
|
TEST_ASSERT( x509write_csr_set_subject_name( &req, subject_name ) == 0 );
|
|
|
|
ret = x509write_csr_der( &req, buf, 4000 );
|
|
TEST_ASSERT( ret >= 0 );
|
|
|
|
c = buf + 3999 - ret;
|
|
|
|
f = fopen( cert_req_check_file, "r" );
|
|
TEST_ASSERT( f != NULL );
|
|
fread( check_buf, 1, 4000, f );
|
|
fclose( f );
|
|
|
|
pem_init( &pem );
|
|
pem_read_buffer( &pem, "-----BEGIN CERTIFICATE REQUEST-----", "-----END CERTIFICATE REQUEST-----", check_buf, NULL, 0, &olen );
|
|
|
|
TEST_ASSERT( memcmp( c, pem.buf, pem.buflen ) == 0 );
|
|
TEST_ASSERT( pem.buflen == (size_t) ret );
|
|
|
|
x509write_csr_free( &req );
|
|
rsa_free( &rsa );
|
|
pem_free( &pem );
|
|
}
|
|
/* END_CASE */
|