1 /*
2 * Copyright 2017-2023 The OpenSSL Project Authors. All Rights Reserved.
3 *
4 * Licensed under the Apache License 2.0 (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
8 */
9 #include <stdio.h>
10 #include "internal/cryptlib.h"
11 #include <openssl/conf.h>
12 #include <openssl/types.h>
13 #include <openssl/asn1.h>
14 #include <openssl/asn1t.h>
15
16 #include <openssl/x509v3.h>
17
18 #include <openssl/safestack.h>
19
20 #include "v3_admis.h"
21 #include "ext_dat.h"
22
23 ASN1_SEQUENCE(NAMING_AUTHORITY) = {
24 ASN1_OPT(NAMING_AUTHORITY, namingAuthorityId, ASN1_OBJECT),
25 ASN1_OPT(NAMING_AUTHORITY, namingAuthorityUrl, ASN1_IA5STRING),
26 ASN1_OPT(NAMING_AUTHORITY, namingAuthorityText, DIRECTORYSTRING),
27 } ASN1_SEQUENCE_END(NAMING_AUTHORITY)
28
29 ASN1_SEQUENCE(PROFESSION_INFO) = {
30 ASN1_EXP_OPT(PROFESSION_INFO, namingAuthority, NAMING_AUTHORITY, 0),
31 ASN1_SEQUENCE_OF(PROFESSION_INFO, professionItems, DIRECTORYSTRING),
32 ASN1_SEQUENCE_OF_OPT(PROFESSION_INFO, professionOIDs, ASN1_OBJECT),
33 ASN1_OPT(PROFESSION_INFO, registrationNumber, ASN1_PRINTABLESTRING),
34 ASN1_OPT(PROFESSION_INFO, addProfessionInfo, ASN1_OCTET_STRING),
35 } ASN1_SEQUENCE_END(PROFESSION_INFO)
36
37 ASN1_SEQUENCE(ADMISSIONS) = {
38 ASN1_EXP_OPT(ADMISSIONS, admissionAuthority, GENERAL_NAME, 0),
39 ASN1_EXP_OPT(ADMISSIONS, namingAuthority, NAMING_AUTHORITY, 1),
40 ASN1_SEQUENCE_OF(ADMISSIONS, professionInfos, PROFESSION_INFO),
41 } ASN1_SEQUENCE_END(ADMISSIONS)
42
43 ASN1_SEQUENCE(ADMISSION_SYNTAX) = {
44 ASN1_OPT(ADMISSION_SYNTAX, admissionAuthority, GENERAL_NAME),
45 ASN1_SEQUENCE_OF(ADMISSION_SYNTAX, contentsOfAdmissions, ADMISSIONS),
46 } ASN1_SEQUENCE_END(ADMISSION_SYNTAX)
47
48 IMPLEMENT_ASN1_FUNCTIONS(NAMING_AUTHORITY)
49 IMPLEMENT_ASN1_FUNCTIONS(PROFESSION_INFO)
50 IMPLEMENT_ASN1_FUNCTIONS(ADMISSIONS)
51 IMPLEMENT_ASN1_FUNCTIONS(ADMISSION_SYNTAX)
52
53 static int i2r_ADMISSION_SYNTAX(const struct v3_ext_method *method, void *in,
54 BIO *bp, int ind);
55
56 const X509V3_EXT_METHOD ossl_v3_ext_admission = {
57 NID_x509ExtAdmission, /* .ext_nid = */
58 0, /* .ext_flags = */
59 ASN1_ITEM_ref(ADMISSION_SYNTAX), /* .it = */
60 NULL, NULL, NULL, NULL,
61 NULL, /* .i2s = */
62 NULL, /* .s2i = */
63 NULL, /* .i2v = */
64 NULL, /* .v2i = */
65 &i2r_ADMISSION_SYNTAX, /* .i2r = */
66 NULL, /* .r2i = */
67 NULL /* extension-specific data */
68 };
69
i2r_NAMING_AUTHORITY(const struct v3_ext_method * method,void * in,BIO * bp,int ind)70 static int i2r_NAMING_AUTHORITY(const struct v3_ext_method *method, void *in,
71 BIO *bp, int ind)
72 {
73 NAMING_AUTHORITY *namingAuthority = (NAMING_AUTHORITY *) in;
74
75 if (namingAuthority == NULL)
76 return 0;
77
78 if (namingAuthority->namingAuthorityId == NULL
79 && namingAuthority->namingAuthorityText == NULL
80 && namingAuthority->namingAuthorityUrl == NULL)
81 return 0;
82
83 if (BIO_printf(bp, "%*snamingAuthority:\n", ind, "") <= 0)
84 goto err;
85
86 if (namingAuthority->namingAuthorityId != NULL) {
87 char objbuf[128];
88 const char *ln = OBJ_nid2ln(OBJ_obj2nid(namingAuthority->namingAuthorityId));
89
90 if (BIO_printf(bp, "%*s namingAuthorityId: ", ind, "") <= 0)
91 goto err;
92
93 OBJ_obj2txt(objbuf, sizeof(objbuf), namingAuthority->namingAuthorityId, 1);
94
95 if (BIO_printf(bp, "%s%s%s%s\n", ln ? ln : "",
96 ln ? " (" : "", objbuf, ln ? ")" : "") <= 0)
97 goto err;
98 }
99 if (namingAuthority->namingAuthorityText != NULL) {
100 if (BIO_printf(bp, "%*s namingAuthorityText: ", ind, "") <= 0
101 || ASN1_STRING_print(bp, namingAuthority->namingAuthorityText) <= 0
102 || BIO_printf(bp, "\n") <= 0)
103 goto err;
104 }
105 if (namingAuthority->namingAuthorityUrl != NULL) {
106 if (BIO_printf(bp, "%*s namingAuthorityUrl: ", ind, "") <= 0
107 || ASN1_STRING_print(bp, namingAuthority->namingAuthorityUrl) <= 0
108 || BIO_printf(bp, "\n") <= 0)
109 goto err;
110 }
111 return 1;
112
113 err:
114 return 0;
115 }
116
i2r_ADMISSION_SYNTAX(const struct v3_ext_method * method,void * in,BIO * bp,int ind)117 static int i2r_ADMISSION_SYNTAX(const struct v3_ext_method *method, void *in,
118 BIO *bp, int ind)
119 {
120 ADMISSION_SYNTAX *admission = (ADMISSION_SYNTAX *)in;
121 int i, j, k;
122
123 if (admission->admissionAuthority != NULL) {
124 if (BIO_printf(bp, "%*sadmissionAuthority:\n", ind, "") <= 0
125 || BIO_printf(bp, "%*s ", ind, "") <= 0
126 || GENERAL_NAME_print(bp, admission->admissionAuthority) <= 0
127 || BIO_printf(bp, "\n") <= 0)
128 goto err;
129 }
130
131 for (i = 0; i < sk_ADMISSIONS_num(admission->contentsOfAdmissions); i++) {
132 ADMISSIONS *entry = sk_ADMISSIONS_value(admission->contentsOfAdmissions, i);
133
134 if (BIO_printf(bp, "%*sEntry %0d:\n", ind, "", 1 + i) <= 0)
135 goto err;
136
137 if (entry->admissionAuthority != NULL) {
138 if (BIO_printf(bp, "%*s admissionAuthority:\n", ind, "") <= 0
139 || BIO_printf(bp, "%*s ", ind, "") <= 0
140 || GENERAL_NAME_print(bp, entry->admissionAuthority) <= 0
141 || BIO_printf(bp, "\n") <= 0)
142 goto err;
143 }
144
145 if (entry->namingAuthority != NULL) {
146 if (i2r_NAMING_AUTHORITY(method, entry->namingAuthority, bp, ind + 2) <= 0)
147 goto err;
148 }
149
150 for (j = 0; j < sk_PROFESSION_INFO_num(entry->professionInfos); j++) {
151 PROFESSION_INFO *pinfo = sk_PROFESSION_INFO_value(entry->professionInfos, j);
152
153 if (BIO_printf(bp, "%*s Profession Info Entry %0d:\n", ind, "", 1 + j) <= 0)
154 goto err;
155
156 if (pinfo->registrationNumber != NULL) {
157 if (BIO_printf(bp, "%*s registrationNumber: ", ind, "") <= 0
158 || ASN1_STRING_print(bp, pinfo->registrationNumber) <= 0
159 || BIO_printf(bp, "\n") <= 0)
160 goto err;
161 }
162
163 if (pinfo->namingAuthority != NULL) {
164 if (i2r_NAMING_AUTHORITY(method, pinfo->namingAuthority, bp, ind + 4) <= 0)
165 goto err;
166 }
167
168 if (pinfo->professionItems != NULL) {
169
170 if (BIO_printf(bp, "%*s Info Entries:\n", ind, "") <= 0)
171 goto err;
172 for (k = 0; k < sk_ASN1_STRING_num(pinfo->professionItems); k++) {
173 ASN1_STRING *val = sk_ASN1_STRING_value(pinfo->professionItems, k);
174
175 if (BIO_printf(bp, "%*s ", ind, "") <= 0
176 || ASN1_STRING_print(bp, val) <= 0
177 || BIO_printf(bp, "\n") <= 0)
178 goto err;
179 }
180 }
181
182 if (pinfo->professionOIDs != NULL) {
183 if (BIO_printf(bp, "%*s Profession OIDs:\n", ind, "") <= 0)
184 goto err;
185 for (k = 0; k < sk_ASN1_OBJECT_num(pinfo->professionOIDs); k++) {
186 ASN1_OBJECT *obj = sk_ASN1_OBJECT_value(pinfo->professionOIDs, k);
187 const char *ln = OBJ_nid2ln(OBJ_obj2nid(obj));
188 char objbuf[128];
189
190 OBJ_obj2txt(objbuf, sizeof(objbuf), obj, 1);
191 if (BIO_printf(bp, "%*s %s%s%s%s\n", ind, "",
192 ln ? ln : "", ln ? " (" : "",
193 objbuf, ln ? ")" : "") <= 0)
194 goto err;
195 }
196 }
197 }
198 }
199 return 1;
200
201 err:
202 return 0;
203 }
204
NAMING_AUTHORITY_get0_authorityId(const NAMING_AUTHORITY * n)205 const ASN1_OBJECT *NAMING_AUTHORITY_get0_authorityId(const NAMING_AUTHORITY *n)
206 {
207 return n->namingAuthorityId;
208 }
209
NAMING_AUTHORITY_set0_authorityId(NAMING_AUTHORITY * n,ASN1_OBJECT * id)210 void NAMING_AUTHORITY_set0_authorityId(NAMING_AUTHORITY *n, ASN1_OBJECT *id)
211 {
212 ASN1_OBJECT_free(n->namingAuthorityId);
213 n->namingAuthorityId = id;
214 }
215
NAMING_AUTHORITY_get0_authorityURL(const NAMING_AUTHORITY * n)216 const ASN1_IA5STRING *NAMING_AUTHORITY_get0_authorityURL(const NAMING_AUTHORITY *n)
217 {
218 return n->namingAuthorityUrl;
219 }
220
NAMING_AUTHORITY_set0_authorityURL(NAMING_AUTHORITY * n,ASN1_IA5STRING * u)221 void NAMING_AUTHORITY_set0_authorityURL(NAMING_AUTHORITY *n, ASN1_IA5STRING *u)
222 {
223 ASN1_IA5STRING_free(n->namingAuthorityUrl);
224 n->namingAuthorityUrl = u;
225 }
226
NAMING_AUTHORITY_get0_authorityText(const NAMING_AUTHORITY * n)227 const ASN1_STRING *NAMING_AUTHORITY_get0_authorityText(const NAMING_AUTHORITY *n)
228 {
229 return n->namingAuthorityText;
230 }
231
NAMING_AUTHORITY_set0_authorityText(NAMING_AUTHORITY * n,ASN1_STRING * t)232 void NAMING_AUTHORITY_set0_authorityText(NAMING_AUTHORITY *n, ASN1_STRING *t)
233 {
234 ASN1_IA5STRING_free(n->namingAuthorityText);
235 n->namingAuthorityText = t;
236 }
237
ADMISSION_SYNTAX_get0_admissionAuthority(const ADMISSION_SYNTAX * as)238 const GENERAL_NAME *ADMISSION_SYNTAX_get0_admissionAuthority(const ADMISSION_SYNTAX *as)
239 {
240 return as->admissionAuthority;
241 }
242
ADMISSION_SYNTAX_set0_admissionAuthority(ADMISSION_SYNTAX * as,GENERAL_NAME * aa)243 void ADMISSION_SYNTAX_set0_admissionAuthority(ADMISSION_SYNTAX *as,
244 GENERAL_NAME *aa)
245 {
246 GENERAL_NAME_free(as->admissionAuthority);
247 as->admissionAuthority = aa;
248 }
249
STACK_OF(ADMISSIONS)250 const STACK_OF(ADMISSIONS) *ADMISSION_SYNTAX_get0_contentsOfAdmissions(const ADMISSION_SYNTAX *as)
251 {
252 return as->contentsOfAdmissions;
253 }
254
ADMISSION_SYNTAX_set0_contentsOfAdmissions(ADMISSION_SYNTAX * as,STACK_OF (ADMISSIONS)* a)255 void ADMISSION_SYNTAX_set0_contentsOfAdmissions(ADMISSION_SYNTAX *as,
256 STACK_OF(ADMISSIONS) *a)
257 {
258 sk_ADMISSIONS_pop_free(as->contentsOfAdmissions, ADMISSIONS_free);
259 as->contentsOfAdmissions = a;
260 }
261
ADMISSIONS_get0_admissionAuthority(const ADMISSIONS * a)262 const GENERAL_NAME *ADMISSIONS_get0_admissionAuthority(const ADMISSIONS *a)
263 {
264 return a->admissionAuthority;
265 }
266
ADMISSIONS_set0_admissionAuthority(ADMISSIONS * a,GENERAL_NAME * aa)267 void ADMISSIONS_set0_admissionAuthority(ADMISSIONS *a, GENERAL_NAME *aa)
268 {
269 GENERAL_NAME_free(a->admissionAuthority);
270 a->admissionAuthority = aa;
271 }
272
ADMISSIONS_get0_namingAuthority(const ADMISSIONS * a)273 const NAMING_AUTHORITY *ADMISSIONS_get0_namingAuthority(const ADMISSIONS *a)
274 {
275 return a->namingAuthority;
276 }
277
ADMISSIONS_set0_namingAuthority(ADMISSIONS * a,NAMING_AUTHORITY * na)278 void ADMISSIONS_set0_namingAuthority(ADMISSIONS *a, NAMING_AUTHORITY *na)
279 {
280 NAMING_AUTHORITY_free(a->namingAuthority);
281 a->namingAuthority = na;
282 }
283
ADMISSIONS_get0_professionInfos(const ADMISSIONS * a)284 const PROFESSION_INFOS *ADMISSIONS_get0_professionInfos(const ADMISSIONS *a)
285 {
286 return a->professionInfos;
287 }
288
ADMISSIONS_set0_professionInfos(ADMISSIONS * a,PROFESSION_INFOS * pi)289 void ADMISSIONS_set0_professionInfos(ADMISSIONS *a, PROFESSION_INFOS *pi)
290 {
291 sk_PROFESSION_INFO_pop_free(a->professionInfos, PROFESSION_INFO_free);
292 a->professionInfos = pi;
293 }
294
PROFESSION_INFO_get0_addProfessionInfo(const PROFESSION_INFO * pi)295 const ASN1_OCTET_STRING *PROFESSION_INFO_get0_addProfessionInfo(const PROFESSION_INFO *pi)
296 {
297 return pi->addProfessionInfo;
298 }
299
PROFESSION_INFO_set0_addProfessionInfo(PROFESSION_INFO * pi,ASN1_OCTET_STRING * aos)300 void PROFESSION_INFO_set0_addProfessionInfo(PROFESSION_INFO *pi,
301 ASN1_OCTET_STRING *aos)
302 {
303 ASN1_OCTET_STRING_free(pi->addProfessionInfo);
304 pi->addProfessionInfo = aos;
305 }
306
PROFESSION_INFO_get0_namingAuthority(const PROFESSION_INFO * pi)307 const NAMING_AUTHORITY *PROFESSION_INFO_get0_namingAuthority(const PROFESSION_INFO *pi)
308 {
309 return pi->namingAuthority;
310 }
311
PROFESSION_INFO_set0_namingAuthority(PROFESSION_INFO * pi,NAMING_AUTHORITY * na)312 void PROFESSION_INFO_set0_namingAuthority(PROFESSION_INFO *pi,
313 NAMING_AUTHORITY *na)
314 {
315 NAMING_AUTHORITY_free(pi->namingAuthority);
316 pi->namingAuthority = na;
317 }
318
STACK_OF(ASN1_STRING)319 const STACK_OF(ASN1_STRING) *PROFESSION_INFO_get0_professionItems(const PROFESSION_INFO *pi)
320 {
321 return pi->professionItems;
322 }
323
PROFESSION_INFO_set0_professionItems(PROFESSION_INFO * pi,STACK_OF (ASN1_STRING)* as)324 void PROFESSION_INFO_set0_professionItems(PROFESSION_INFO *pi,
325 STACK_OF(ASN1_STRING) *as)
326 {
327 sk_ASN1_STRING_pop_free(pi->professionItems, ASN1_STRING_free);
328 pi->professionItems = as;
329 }
330
STACK_OF(ASN1_OBJECT)331 const STACK_OF(ASN1_OBJECT) *PROFESSION_INFO_get0_professionOIDs(const PROFESSION_INFO *pi)
332 {
333 return pi->professionOIDs;
334 }
335
PROFESSION_INFO_set0_professionOIDs(PROFESSION_INFO * pi,STACK_OF (ASN1_OBJECT)* po)336 void PROFESSION_INFO_set0_professionOIDs(PROFESSION_INFO *pi,
337 STACK_OF(ASN1_OBJECT) *po)
338 {
339 sk_ASN1_OBJECT_pop_free(pi->professionOIDs, ASN1_OBJECT_free);
340 pi->professionOIDs = po;
341 }
342
PROFESSION_INFO_get0_registrationNumber(const PROFESSION_INFO * pi)343 const ASN1_PRINTABLESTRING *PROFESSION_INFO_get0_registrationNumber(const PROFESSION_INFO *pi)
344 {
345 return pi->registrationNumber;
346 }
347
PROFESSION_INFO_set0_registrationNumber(PROFESSION_INFO * pi,ASN1_PRINTABLESTRING * rn)348 void PROFESSION_INFO_set0_registrationNumber(PROFESSION_INFO *pi,
349 ASN1_PRINTABLESTRING *rn)
350 {
351 ASN1_PRINTABLESTRING_free(pi->registrationNumber);
352 pi->registrationNumber = rn;
353 }
354