/* * Copyright 2014-2023 The GmSSL Project. All Rights Reserved. * * Licensed under the Apache License, Version 2.0 (the License); you may * not use this file except in compliance with the License. * * http://www.apache.org/licenses/LICENSE-2.0 */ #include #include #include #include #include #include #include static const char *usage = "[-in pem] [-out file]\n"; static const char *options = "Options\n" "\n" " -in pem | stdin Input certificates in PEM format.\n" " -out der | stdout Output CRL file in DER-encoding\n" "\n" "Examples\n" "\n" " gmssl crlget -in cert.pem -out crl.der\n" "\n"; int certparse_main(int argc, char **argv) { int ret = 1; char *prog = argv[0]; char *infile = NULL; char *outfile = NULL; FILE *infp = stdin; FILE *outfp = stdout; uint8_t cert[18192]; size_t certlen; argc--; argv++; while (argc > 0) { if (!strcmp(*argv, "-help")) { printf("usage: gmssl %s %s\n\n", prog, options); printf("%s\n", usage); goto end; } else if (!strcmp(*argv, "-in")) { if (--argc < 1) goto bad; infile = *(++argv); if (!(infp = fopen(infile, "rb"))) { fprintf(stderr, "%s: open '%s' failure : %s\n", prog, infile, strerror(errno)); goto end; } } else if (!strcmp(*argv, "-out")) { if (--argc < 1) goto bad; outfile = *(++argv); if (!(outfp = fopen(outfile, "wb"))) { fprintf(stderr, "%s: open '%s' failure : %s\n", prog, outfile, strerror(errno)); goto end; } } else { fprintf(stderr, "%s: illegal option `%s`\n", prog, *argv); goto end; bad: fprintf(stderr, "%s: `%s` option value missing\n", prog, *argv); goto end; } argc--; argv++; } if (x509_cert_from_pem(cert, &certlen, sizeof(cert), infp) != 1) { goto end; } if (x509_cert_get_exts(cert, certlen, &exts, &extslen) != 1) { goto end; } if (x509_exts_get_ext_by_oid(exts, extslen, OID_ce_crl_ end: if (infile && infp) fclose(infp); if (outfile && outfp) fclose(outfp); return ret; }