os/ossrv/ssl/libcrypto/src/crypto/x509v3/v3_pcons.c
changeset 0 bde4ae8d615e
     1.1 --- /dev/null	Thu Jan 01 00:00:00 1970 +0000
     1.2 +++ b/os/ossrv/ssl/libcrypto/src/crypto/x509v3/v3_pcons.c	Fri Jun 15 03:10:57 2012 +0200
     1.3 @@ -0,0 +1,157 @@
     1.4 +/* v3_pcons.c */
     1.5 +/* Written by Dr Stephen N Henson (shenson@bigfoot.com) for the OpenSSL
     1.6 + * project.
     1.7 + */
     1.8 +/* ====================================================================
     1.9 + * Copyright (c) 2003 The OpenSSL Project.  All rights reserved.
    1.10 + *
    1.11 + * Redistribution and use in source and binary forms, with or without
    1.12 + * modification, are permitted provided that the following conditions
    1.13 + * are met:
    1.14 + *
    1.15 + * 1. Redistributions of source code must retain the above copyright
    1.16 + *    notice, this list of conditions and the following disclaimer. 
    1.17 + *
    1.18 + * 2. Redistributions in binary form must reproduce the above copyright
    1.19 + *    notice, this list of conditions and the following disclaimer in
    1.20 + *    the documentation and/or other materials provided with the
    1.21 + *    distribution.
    1.22 + *
    1.23 + * 3. All advertising materials mentioning features or use of this
    1.24 + *    software must display the following acknowledgment:
    1.25 + *    "This product includes software developed by the OpenSSL Project
    1.26 + *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
    1.27 + *
    1.28 + * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
    1.29 + *    endorse or promote products derived from this software without
    1.30 + *    prior written permission. For written permission, please contact
    1.31 + *    licensing@OpenSSL.org.
    1.32 + *
    1.33 + * 5. Products derived from this software may not be called "OpenSSL"
    1.34 + *    nor may "OpenSSL" appear in their names without prior written
    1.35 + *    permission of the OpenSSL Project.
    1.36 + *
    1.37 + * 6. Redistributions of any form whatsoever must retain the following
    1.38 + *    acknowledgment:
    1.39 + *    "This product includes software developed by the OpenSSL Project
    1.40 + *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
    1.41 + *
    1.42 + * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
    1.43 + * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
    1.44 + * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
    1.45 + * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
    1.46 + * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
    1.47 + * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
    1.48 + * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
    1.49 + * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
    1.50 + * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
    1.51 + * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
    1.52 + * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
    1.53 + * OF THE POSSIBILITY OF SUCH DAMAGE.
    1.54 + * ====================================================================
    1.55 + *
    1.56 + * This product includes cryptographic software written by Eric Young
    1.57 + * (eay@cryptsoft.com).  This product includes software written by Tim
    1.58 + * Hudson (tjh@cryptsoft.com).
    1.59 + *
    1.60 + */
    1.61 + /*
    1.62 + © Portions copyright (c) 2006 Nokia Corporation.  All rights reserved.
    1.63 + */
    1.64 +
    1.65 +
    1.66 +
    1.67 +#include <stdio.h>
    1.68 +#include "cryptlib.h"
    1.69 +#include <openssl/asn1.h>
    1.70 +#include <openssl/asn1t.h>
    1.71 +#include <openssl/conf.h>
    1.72 +#include <openssl/x509v3.h>
    1.73 +#if (defined(SYMBIAN) && (defined(__WINSCW__) || defined(__WINS__)))
    1.74 +#include "libcrypto_wsd_macros.h"
    1.75 +#include "libcrypto_wsd.h"
    1.76 +#endif
    1.77 +
    1.78 +
    1.79 +static STACK_OF(CONF_VALUE) *i2v_POLICY_CONSTRAINTS(X509V3_EXT_METHOD *method,
    1.80 +				void *bcons, STACK_OF(CONF_VALUE) *extlist);
    1.81 +static void *v2i_POLICY_CONSTRAINTS(X509V3_EXT_METHOD *method,
    1.82 +				X509V3_CTX *ctx, STACK_OF(CONF_VALUE) *values);
    1.83 +
    1.84 +#ifndef EMULATOR
    1.85 +X509V3_EXT_METHOD v3_policy_constraints = {
    1.86 +NID_policy_constraints, 0,
    1.87 +ASN1_ITEM_ref(POLICY_CONSTRAINTS),
    1.88 +0,0,0,0,
    1.89 +0,0,
    1.90 +i2v_POLICY_CONSTRAINTS,
    1.91 +v2i_POLICY_CONSTRAINTS,
    1.92 +NULL,NULL,
    1.93 +NULL
    1.94 +};
    1.95 +#else
    1.96 +X509V3_EXT_METHOD v3_policy_constraints = {
    1.97 +NID_policy_constraints, 0,
    1.98 +ASN1_ITEM_ref(POLICY_CONSTRAINTS),
    1.99 +0,0,0,0,
   1.100 +0,0,
   1.101 +i2v_POLICY_CONSTRAINTS,
   1.102 +v2i_POLICY_CONSTRAINTS,
   1.103 +NULL,NULL,
   1.104 +NULL
   1.105 +};
   1.106 +#endif
   1.107 +ASN1_SEQUENCE(POLICY_CONSTRAINTS) = {
   1.108 +	ASN1_IMP_OPT(POLICY_CONSTRAINTS, requireExplicitPolicy, ASN1_INTEGER,0),
   1.109 +	ASN1_IMP_OPT(POLICY_CONSTRAINTS, inhibitPolicyMapping, ASN1_INTEGER,1)
   1.110 +} ASN1_SEQUENCE_END(POLICY_CONSTRAINTS)
   1.111 +
   1.112 +IMPLEMENT_ASN1_ALLOC_FUNCTIONS(POLICY_CONSTRAINTS)
   1.113 +
   1.114 +
   1.115 +static STACK_OF(CONF_VALUE) *i2v_POLICY_CONSTRAINTS(X509V3_EXT_METHOD *method,
   1.116 +	     void *a, STACK_OF(CONF_VALUE) *extlist)
   1.117 +{
   1.118 +	POLICY_CONSTRAINTS *pcons = a;
   1.119 +	X509V3_add_value_int("Require Explicit Policy",
   1.120 +			pcons->requireExplicitPolicy, &extlist);
   1.121 +	X509V3_add_value_int("Inhibit Policy Mapping",
   1.122 +			pcons->inhibitPolicyMapping, &extlist);
   1.123 +	return extlist;
   1.124 +}
   1.125 +
   1.126 +static void *v2i_POLICY_CONSTRAINTS(X509V3_EXT_METHOD *method,
   1.127 +	     X509V3_CTX *ctx, STACK_OF(CONF_VALUE) *values)
   1.128 +{
   1.129 +	POLICY_CONSTRAINTS *pcons=NULL;
   1.130 +	CONF_VALUE *val;
   1.131 +	int i;
   1.132 +	if(!(pcons = POLICY_CONSTRAINTS_new())) {
   1.133 +		X509V3err(X509V3_F_V2I_POLICY_CONSTRAINTS, ERR_R_MALLOC_FAILURE);
   1.134 +		return NULL;
   1.135 +	}
   1.136 +	for(i = 0; i < sk_CONF_VALUE_num(values); i++) {
   1.137 +		val = sk_CONF_VALUE_value(values, i);
   1.138 +		if(!strcmp(val->name, "requireExplicitPolicy")) {
   1.139 +			if(!X509V3_get_value_int(val,
   1.140 +				&pcons->requireExplicitPolicy)) goto err;
   1.141 +		} else if(!strcmp(val->name, "inhibitPolicyMapping")) {
   1.142 +			if(!X509V3_get_value_int(val,
   1.143 +				&pcons->inhibitPolicyMapping)) goto err;
   1.144 +		} else {
   1.145 +			X509V3err(X509V3_F_V2I_POLICY_CONSTRAINTS, X509V3_R_INVALID_NAME);
   1.146 +			X509V3_conf_err(val);
   1.147 +			goto err;
   1.148 +		}
   1.149 +	}
   1.150 +	if (!pcons->inhibitPolicyMapping && !pcons->requireExplicitPolicy) {
   1.151 +		X509V3err(X509V3_F_V2I_POLICY_CONSTRAINTS, X509V3_R_ILLEGAL_EMPTY_EXTENSION);
   1.152 +		goto err;
   1.153 +	}
   1.154 +
   1.155 +	return pcons;
   1.156 +	err:
   1.157 +	POLICY_CONSTRAINTS_free(pcons);
   1.158 +	return NULL;
   1.159 +}
   1.160 +