2011-07-13 02:18:24 +04:00
|
|
|
/**
|
|
|
|
* FreeRDP: A Remote Desktop Protocol Client
|
|
|
|
* Certificate Handling
|
|
|
|
*
|
|
|
|
* Copyright 2011 Marc-Andre Moreau <marcandre.moreau@gmail.com>
|
|
|
|
*
|
|
|
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
* you may not use this file except in compliance with the License.
|
|
|
|
* You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#ifndef __CERTIFICATE_H
|
|
|
|
#define __CERTIFICATE_H
|
|
|
|
|
|
|
|
typedef struct rdp_certificate rdpCertificate;
|
|
|
|
|
|
|
|
#include "rdp.h"
|
2011-07-13 05:43:52 +04:00
|
|
|
#include "ber.h"
|
2011-07-13 02:18:24 +04:00
|
|
|
#include "crypto.h"
|
|
|
|
|
2011-07-13 07:50:51 +04:00
|
|
|
#include <freerdp/utils/blob.h>
|
2011-07-13 02:18:24 +04:00
|
|
|
#include <freerdp/utils/stream.h>
|
|
|
|
#include <freerdp/utils/hexdump.h>
|
|
|
|
|
|
|
|
/* Certificate Version */
|
|
|
|
#define CERT_CHAIN_VERSION_1 0x00000001
|
|
|
|
#define CERT_CHAIN_VERSION_2 0x00000002
|
|
|
|
#define CERT_CHAIN_VERSION_MASK 0x7FFFFFFF
|
|
|
|
#define CERT_PERMANENTLY_ISSUED 0x00000000
|
|
|
|
#define CERT_TEMPORARILY_ISSUED 0x80000000
|
|
|
|
|
2011-09-05 22:02:52 +04:00
|
|
|
#define BB_RSA_KEY_BLOB 6
|
|
|
|
#define BB_RSA_SIGNATURE_BLOB 8
|
|
|
|
|
2011-08-16 23:00:25 +04:00
|
|
|
struct rdp_CertBlob
|
2011-07-13 02:18:24 +04:00
|
|
|
{
|
|
|
|
uint32 length;
|
|
|
|
uint8* data;
|
2011-08-16 23:00:25 +04:00
|
|
|
};
|
|
|
|
typedef struct rdp_CertBlob rdpCertBlob;
|
2011-07-13 02:18:24 +04:00
|
|
|
|
2011-08-16 23:00:25 +04:00
|
|
|
struct rdp_X509CertChain
|
2011-07-13 02:18:24 +04:00
|
|
|
{
|
|
|
|
uint32 count;
|
2011-08-16 23:00:25 +04:00
|
|
|
rdpCertBlob* array;
|
|
|
|
};
|
|
|
|
typedef struct rdp_X509CertChain rdpX509CertChain;
|
2011-07-13 02:18:24 +04:00
|
|
|
|
2011-08-16 23:00:25 +04:00
|
|
|
struct rdp_CertInfo
|
2011-07-13 07:50:51 +04:00
|
|
|
{
|
2011-08-16 01:05:48 +04:00
|
|
|
rdpBlob modulus;
|
2011-07-13 07:50:51 +04:00
|
|
|
uint8 exponent[4];
|
2011-08-16 23:00:25 +04:00
|
|
|
};
|
|
|
|
typedef struct rdp_CertInfo rdpCertInfo;
|
2011-07-13 07:50:51 +04:00
|
|
|
|
2011-07-13 02:18:24 +04:00
|
|
|
struct rdp_certificate
|
|
|
|
{
|
2011-08-16 23:00:25 +04:00
|
|
|
rdpCertInfo cert_info;
|
|
|
|
rdpX509CertChain* x509_cert_chain;
|
2011-07-13 02:18:24 +04:00
|
|
|
};
|
|
|
|
|
2011-08-16 23:00:25 +04:00
|
|
|
void certificate_read_x509_certificate(rdpCertBlob* cert, rdpCertInfo* info);
|
2011-07-13 07:50:51 +04:00
|
|
|
|
2011-08-16 23:00:25 +04:00
|
|
|
rdpX509CertChain* certificate_new_x509_certificate_chain(uint32 count);
|
|
|
|
void certificate_free_x509_certificate_chain(rdpX509CertChain* x509_cert_chain);
|
2011-07-13 02:18:24 +04:00
|
|
|
|
2011-09-05 22:02:52 +04:00
|
|
|
boolean certificate_read_server_proprietary_certificate(rdpCertificate* certificate, STREAM* s);
|
|
|
|
boolean certificate_read_server_x509_certificate_chain(rdpCertificate* certificate, STREAM* s);
|
|
|
|
boolean certificate_read_server_certificate(rdpCertificate* certificate, uint8* server_cert, int length);
|
2011-07-13 02:18:24 +04:00
|
|
|
|
2011-09-05 22:02:52 +04:00
|
|
|
rdpCertificate* certificate_new(void);
|
2011-07-13 02:18:24 +04:00
|
|
|
void certificate_free(rdpCertificate* certificate);
|
|
|
|
|
2011-07-15 09:11:09 +04:00
|
|
|
#ifdef WITH_DEBUG_CERTIFICATE
|
|
|
|
#define DEBUG_CERTIFICATE(fmt, ...) DEBUG_CLASS(CERTIFICATE, fmt, ## __VA_ARGS__)
|
|
|
|
#else
|
|
|
|
#define DEBUG_CERTIFICATE(fmt, ...) DEBUG_NULL(fmt, ## __VA_ARGS__)
|
|
|
|
#endif
|
|
|
|
|
2011-07-13 02:18:24 +04:00
|
|
|
#endif /* __CERTIFICATE_H */
|