x509_reqtest.c 5.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218
  1. /*
  2. * Copyright 2014-2022 The GmSSL Project. All Rights Reserved.
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the License); you may
  5. * not use this file except in compliance with the License.
  6. *
  7. * http://www.apache.org/licenses/LICENSE-2.0
  8. */
  9. #include <stdio.h>
  10. #include <string.h>
  11. #include <stdlib.h>
  12. #include <gmssl/oid.h>
  13. #include <gmssl/x509_alg.h>
  14. #include <gmssl/x509_req.h>
  15. #include <gmssl/x509.h>
  16. #include <gmssl/rand.h>
  17. #include <gmssl/error.h>
  18. static int test_x509_request_info(void)
  19. {
  20. uint8_t subject[256];
  21. size_t subject_len;
  22. SM2_KEY sm2_key;
  23. uint8_t attrs_buf[512];
  24. size_t attrs_len = 0;
  25. uint8_t buf[256];
  26. uint8_t *p = buf;
  27. const uint8_t *cp = buf;
  28. size_t len = 0;
  29. const uint8_t *d;
  30. size_t dlen;
  31. int version;
  32. const uint8_t *subj;
  33. size_t subj_len;
  34. SM2_KEY pub_key;
  35. const uint8_t *attrs;
  36. if (sm2_key_generate(&sm2_key) != 1
  37. || x509_name_set(subject, &subject_len, sizeof(subject), "CN", "Beijing", "Haidian", "PKU", "CS", "CA") != 1
  38. || x509_request_info_to_der(X509_version_v1, subject, subject_len, &sm2_key, attrs_buf, attrs_len, &p, &len) != 1
  39. || asn1_sequence_from_der(&d, &dlen, &cp, &len) != 1
  40. || asn1_length_is_zero(len) != 1) {
  41. error_print();
  42. return -1;
  43. }
  44. x509_request_info_print(stderr, 0, 0, "CertificationRequestInfo", d, dlen);
  45. p = buf;
  46. cp = buf;
  47. len = 0;
  48. if (x509_request_info_to_der(X509_version_v1, subject, subject_len, &sm2_key, attrs_buf, attrs_len, &p, &len) != 1
  49. || x509_request_info_from_der(&version, &subj, &subj_len, &pub_key, &attrs, &attrs_len, &cp, &len) != 1
  50. || asn1_length_is_zero(len) != 1) {
  51. error_print();
  52. return -1;
  53. }
  54. format_print(stderr, 0, 0, "CertificationRequestInfo\n");
  55. format_print(stderr, 0, 4, "version: %d\n", version);
  56. x509_name_print(stderr, 0, 4, "subject", subj, subj_len);
  57. sm2_public_key_print(stderr, 0, 4, "publicKey", &pub_key);
  58. format_bytes(stderr, 0, 4, "attributes", attrs, attrs_len);
  59. printf("%s() ok\n", __FUNCTION__);
  60. return 1;
  61. }
  62. static int test_x509_request(void)
  63. {
  64. /*
  65. uint8_t subject[256];
  66. size_t subject_len;
  67. SM2_KEY sm2_key;
  68. uint8_t signature[128] = { 0x01, 0x02 };
  69. uint8_t buf[512];
  70. uint8_t *p = buf;
  71. const uint8_t *cp = buf;
  72. size_t len = 0;
  73. const uint8_t *d;
  74. size_t dlen;
  75. int version;
  76. const uint8_t *subj;
  77. size_t subj_len;
  78. SM2_KEY pub_key;
  79. const uint8_t *attrs;
  80. size_t attrs_len;
  81. int sig_alg;
  82. const uint8_t *sig;
  83. size_t siglen;
  84. if (sm2_key_generate(&sm2_key) != 1
  85. || x509_name_set(subject, &subject_len, sizeof(subject), "CN", "Beijing", "Haidian", "PKU", "CS", "CA") != 1
  86. || x509_request_to_der(X509_version_v1, subject, subject_len, &sm2_key, NULL, 0,
  87. OID_sm2sign_with_sm3, signature, sizeof(signature), &p, &len) != 1
  88. || asn1_sequence_from_der(&d, &dlen, &cp, &len) != 1
  89. || asn1_length_is_zero(len) != 1) {
  90. error_print();
  91. return -1;
  92. }
  93. x509_request_print(stderr, 0, 0, "CertificationRequest", d, dlen);
  94. p = buf;
  95. cp = buf;
  96. len = 0;
  97. if (x509_request_to_der(X509_version_v1, subject, subject_len, &sm2_key, NULL, 0,
  98. OID_sm2sign_with_sm3, signature, sizeof(signature), &p, &len) != 1
  99. || x509_request_from_der(&version, &subj, &subj_len, &pub_key, &attrs, &attrs_len,
  100. &sig_alg, &sig, &siglen, &cp, &len) != 1
  101. || asn1_length_is_zero(len) != 1) {
  102. error_print();
  103. return -1;
  104. }
  105. format_print(stderr, 0, 0, "CertificationRequest\n");
  106. format_print(stderr, 0, 4, "version: %d\n", version);
  107. x509_name_print(stderr, 0, 4, "subject", subj, subj_len);
  108. sm2_public_key_print(stderr, 0, 4, "publicKey", &pub_key);
  109. format_bytes(stderr, 0, 4, "attributes", attrs, attrs_len);
  110. format_print(stderr, 0, 4, "signatureAlgor: %s\n", x509_signature_algor_name(sig_alg));
  111. format_bytes(stderr, 0, 4, "signature", sig, siglen);
  112. */
  113. printf("%s() ok\n", __FUNCTION__);
  114. return 1;
  115. }
  116. static int test_x509_req(void)
  117. {
  118. uint8_t subject[256];
  119. size_t subject_len;
  120. SM2_KEY sm2_key;
  121. uint8_t attrs[256];
  122. size_t attrs_len = 0;
  123. uint8_t req[512];
  124. uint8_t *p = req;
  125. size_t reqlen = 0;
  126. if (sm2_key_generate(&sm2_key) != 1
  127. || x509_name_set(subject, &subject_len, sizeof(subject), "CN", "Beijing", "Haidian", "PKU", "CS", "CA") != 1
  128. || x509_req_sign_to_der(
  129. X509_version_v1, subject, subject_len, &sm2_key, attrs, attrs_len,
  130. OID_sm2sign_with_sm3, &sm2_key, SM2_DEFAULT_ID, strlen(SM2_DEFAULT_ID),
  131. &p, &reqlen) != 1) {
  132. error_print();
  133. return -1;
  134. }
  135. x509_req_print(stderr, 0, 0, "CertificationRequest", req, reqlen);
  136. FILE *fp;
  137. if ((fp = fopen("req.pem", "w")) == NULL) {
  138. error_print();
  139. return -1;
  140. }
  141. if (x509_req_to_pem(req, reqlen, fp) != 1) {
  142. error_print();
  143. return -1;
  144. }
  145. fclose(fp);
  146. x509_req_to_pem(req, reqlen, stderr);
  147. memset(req, 0, sizeof(req));
  148. if ((fp = fopen("req.pem", "r")) == NULL) {
  149. error_print();
  150. return -1;
  151. }
  152. if (x509_req_from_pem(req, &reqlen, sizeof(req), fp) != 1) {
  153. error_print();
  154. return -1;
  155. }
  156. if (x509_req_verify(req, reqlen, SM2_DEFAULT_ID, strlen(SM2_DEFAULT_ID)) != 1) {
  157. error_print();
  158. return -1;
  159. }
  160. format_print(stderr, 0, 0, "x509_req_verify() success\n");
  161. printf("%s() ok\n", __FUNCTION__);
  162. return 1;
  163. }
  164. int main(void)
  165. {
  166. if (test_x509_request_info() != 1) goto err;
  167. if (test_x509_request() != 1) goto err;
  168. if (test_x509_req() != 1) goto err;
  169. printf("%s all tests passed!\n", __FILE__);
  170. return 0;
  171. err:
  172. error_print();
  173. return 1;
  174. }