1 /* crypto/store/str_lib.c -*- mode:C; c-file-style: "eay" -*- */
2 /* Written by Richard Levitte (richard@levitte.org) for the OpenSSL
5 /* ====================================================================
6 * Copyright (c) 2003 The OpenSSL Project. All rights reserved.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
12 * 1. Redistributions of source code must retain the above copyright
13 * notice, this list of conditions and the following disclaimer.
15 * 2. Redistributions in binary form must reproduce the above copyright
16 * notice, this list of conditions and the following disclaimer in
17 * the documentation and/or other materials provided with the
20 * 3. All advertising materials mentioning features or use of this
21 * software must display the following acknowledgment:
22 * "This product includes software developed by the OpenSSL Project
23 * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
25 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26 * endorse or promote products derived from this software without
27 * prior written permission. For written permission, please contact
28 * openssl-core@openssl.org.
30 * 5. Products derived from this software may not be called "OpenSSL"
31 * nor may "OpenSSL" appear in their names without prior written
32 * permission of the OpenSSL Project.
34 * 6. Redistributions of any form whatsoever must retain the following
36 * "This product includes software developed by the OpenSSL Project
37 * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
39 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
43 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50 * OF THE POSSIBILITY OF SUCH DAMAGE.
51 * ====================================================================
53 * This product includes cryptographic software written by Eric Young
54 * (eay@cryptsoft.com). This product includes software written by Tim
55 * Hudson (tjh@cryptsoft.com).
60 #include <openssl/bn.h>
61 #include <openssl/err.h>
62 #include <openssl/engine.h>
65 const char * const STORE_object_type_string[STORE_OBJECT_TYPE_NUM+1] =
76 const int STORE_param_sizes[STORE_PARAM_TYPE_NUM+1] =
79 sizeof(int), /* EVP_TYPE */
80 sizeof(size_t), /* BITS */
81 -1, /* KEY_PARAMETERS */
82 0 /* KEY_NO_PARAMETERS */
85 const int STORE_attr_sizes[STORE_ATTR_TYPE_NUM+1] =
88 -1, /* FRIENDLYNAME: C string */
89 SHA_DIGEST_LENGTH, /* KEYID: SHA1 digest, 160 bits */
90 SHA_DIGEST_LENGTH, /* ISSUERKEYID: SHA1 digest, 160 bits */
91 SHA_DIGEST_LENGTH, /* SUBJECTKEYID: SHA1 digest, 160 bits */
92 SHA_DIGEST_LENGTH, /* ISSUERSERIALHASH: SHA1 digest, 160 bits */
93 sizeof(X509_NAME *), /* ISSUER: X509_NAME * */
94 sizeof(BIGNUM *), /* SERIAL: BIGNUM * */
95 sizeof(X509_NAME *), /* SUBJECT: X509_NAME * */
96 SHA_DIGEST_LENGTH, /* CERTHASH: SHA1 digest, 160 bits */
97 -1, /* EMAIL: C string */
98 -1, /* FILENAME: C string */
101 STORE *STORE_new_method(const STORE_METHOD *method)
107 STOREerr(STORE_F_STORE_NEW_METHOD,ERR_R_PASSED_NULL_PARAMETER);
111 ret=(STORE *)OPENSSL_malloc(sizeof(STORE));
114 STOREerr(STORE_F_STORE_NEW_METHOD,ERR_R_MALLOC_FAILURE);
120 CRYPTO_new_ex_data(CRYPTO_EX_INDEX_STORE, ret, &ret->ex_data);
121 if (ret->meth->init && !ret->meth->init(ret))
129 STORE *STORE_new_engine(ENGINE *engine)
133 const STORE_METHOD *meth = 0;
135 #ifdef OPENSSL_NO_ENGINE
140 if (!ENGINE_init(engine))
142 STOREerr(STORE_F_STORE_NEW_ENGINE, ERR_R_ENGINE_LIB);
149 STOREerr(STORE_F_STORE_NEW_ENGINE,ERR_R_PASSED_NULL_PARAMETER);
154 meth = ENGINE_get_STORE(e);
157 STOREerr(STORE_F_STORE_NEW_ENGINE,
165 ret = STORE_new_method(meth);
168 STOREerr(STORE_F_STORE_NEW_ENGINE,ERR_R_STORE_LIB);
177 void STORE_free(STORE *store)
181 if (store->meth->clean)
182 store->meth->clean(store);
183 CRYPTO_free_ex_data(CRYPTO_EX_INDEX_STORE, store, &store->ex_data);
188 int STORE_get_ex_new_index(long argl, void *argp, CRYPTO_EX_new *new_func,
189 CRYPTO_EX_dup *dup_func, CRYPTO_EX_free *free_func)
191 return CRYPTO_get_ex_new_index(CRYPTO_EX_INDEX_STORE, argl, argp,
192 new_func, dup_func, free_func);
195 int STORE_set_ex_data(STORE *r, int idx, void *arg)
197 return(CRYPTO_set_ex_data(&r->ex_data,idx,arg));
200 void *STORE_get_ex_data(STORE *r, int idx)
202 return(CRYPTO_get_ex_data(&r->ex_data,idx));
205 const STORE_METHOD *STORE_get_method(STORE *store)
210 const STORE_METHOD *STORE_set_method(STORE *store, const STORE_METHOD *meth)
219 #define check_store(s,fncode,fnname,fnerrcode) \
222 if ((s) == NULL || (s)->meth) \
224 STOREerr((fncode), ERR_R_PASSED_NULL_PARAMETER); \
227 if ((s)->meth->fnname == NULL) \
229 STOREerr((fncode), (fnerrcode)); \
237 X509 *STORE_get_certificate(STORE *s, OPENSSL_ITEM attributes[],
238 OPENSSL_ITEM parameters[])
240 STORE_OBJECT *object;
243 check_store(s,STORE_F_STORE_GET_CERTIFICATE,
244 get_object,STORE_R_NO_GET_OBJECT_FUNCTION);
246 object = s->meth->get_object(s, STORE_OBJECT_TYPE_X509_CERTIFICATE,
247 attributes, parameters);
248 if (!object || !object->data.x509.certificate)
250 STOREerr(STORE_F_STORE_GET_CERTIFICATE,
251 STORE_R_FAILED_GETTING_CERTIFICATE);
254 CRYPTO_add(&object->data.x509.certificate->references,1,CRYPTO_LOCK_X509);
256 REF_PRINT("X509",data);
258 x = object->data.x509.certificate;
259 STORE_OBJECT_free(object);
263 int STORE_store_certificate(STORE *s, X509 *data, OPENSSL_ITEM attributes[],
264 OPENSSL_ITEM parameters[])
266 STORE_OBJECT *object;
269 check_store(s,STORE_F_STORE_CERTIFICATE,
270 store_object,STORE_R_NO_STORE_OBJECT_FUNCTION);
272 object = STORE_OBJECT_new();
275 STOREerr(STORE_F_STORE_CERTIFICATE,
276 ERR_R_MALLOC_FAILURE);
280 CRYPTO_add(&data->references,1,CRYPTO_LOCK_X509);
282 REF_PRINT("X509",data);
284 object->data.x509.certificate = data;
286 i = s->meth->store_object(s, STORE_OBJECT_TYPE_X509_CERTIFICATE,
287 object, attributes, parameters);
289 STORE_OBJECT_free(object);
293 STOREerr(STORE_F_STORE_CERTIFICATE,
294 STORE_R_FAILED_STORING_CERTIFICATE);
300 int STORE_revoke_certificate(STORE *s, OPENSSL_ITEM attributes[],
301 OPENSSL_ITEM parameters[])
303 check_store(s,STORE_F_STORE_REVOKE_CERTIFICATE,
304 revoke_object,STORE_R_NO_REVOKE_OBJECT_FUNCTION);
306 if (!s->meth->revoke_object(s, STORE_OBJECT_TYPE_X509_CERTIFICATE,
307 attributes, parameters))
309 STOREerr(STORE_F_STORE_REVOKE_CERTIFICATE,
310 STORE_R_FAILED_REVOKING_CERTIFICATE);
316 int STORE_delete_certificate(STORE *s, OPENSSL_ITEM attributes[],
317 OPENSSL_ITEM parameters[])
319 check_store(s,STORE_F_STORE_DELETE_CERTIFICATE,
320 delete_object,STORE_R_NO_DELETE_OBJECT_FUNCTION);
322 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_X509_CERTIFICATE,
323 attributes, parameters))
325 STOREerr(STORE_F_STORE_DELETE_CERTIFICATE,
326 STORE_R_FAILED_DELETING_CERTIFICATE);
332 void *STORE_list_certificate_start(STORE *s, OPENSSL_ITEM attributes[],
333 OPENSSL_ITEM parameters[])
337 check_store(s,STORE_F_STORE_LIST_CERTIFICATE_START,
338 list_object_start,STORE_R_NO_LIST_OBJECT_START_FUNCTION);
340 handle = s->meth->list_object_start(s,
341 STORE_OBJECT_TYPE_X509_CERTIFICATE, attributes, parameters);
344 STOREerr(STORE_F_STORE_LIST_CERTIFICATE_START,
345 STORE_R_FAILED_LISTING_CERTIFICATES);
351 X509 *STORE_list_certificate_next(STORE *s, void *handle)
353 STORE_OBJECT *object;
356 check_store(s,STORE_F_STORE_LIST_CERTIFICATE_NEXT,
357 list_object_next,STORE_R_NO_LIST_OBJECT_NEXT_FUNCTION);
359 object = s->meth->list_object_next(s, handle);
360 if (!object || !object->data.x509.certificate)
362 STOREerr(STORE_F_STORE_LIST_CERTIFICATE_NEXT,
363 STORE_R_FAILED_LISTING_CERTIFICATES);
366 CRYPTO_add(&object->data.x509.certificate->references,1,CRYPTO_LOCK_X509);
368 REF_PRINT("X509",data);
370 x = object->data.x509.certificate;
371 STORE_OBJECT_free(object);
375 int STORE_list_certificate_end(STORE *s, void *handle)
377 check_store(s,STORE_F_STORE_LIST_CERTIFICATE_END,
378 list_object_end,STORE_R_NO_LIST_OBJECT_END_FUNCTION);
380 if (!s->meth->list_object_end(s, handle))
382 STOREerr(STORE_F_STORE_LIST_CERTIFICATE_END,
383 STORE_R_FAILED_LISTING_CERTIFICATES);
389 int STORE_list_certificate_endp(STORE *s, void *handle)
391 check_store(s,STORE_F_STORE_LIST_CERTIFICATE_ENDP,
392 list_object_endp,STORE_R_NO_LIST_OBJECT_ENDP_FUNCTION);
394 if (!s->meth->list_object_endp(s, handle))
396 STOREerr(STORE_F_STORE_LIST_CERTIFICATE_ENDP,
397 STORE_R_FAILED_LISTING_CERTIFICATES);
403 EVP_PKEY *STORE_generate_key(STORE *s, OPENSSL_ITEM attributes[],
404 OPENSSL_ITEM parameters[])
406 STORE_OBJECT *object;
409 check_store(s,STORE_F_STORE_GENERATE_KEY,
410 generate_object,STORE_R_NO_GENERATE_OBJECT_FUNCTION);
412 object = s->meth->generate_object(s, STORE_OBJECT_TYPE_PRIVATE_KEY,
413 attributes, parameters);
414 if (!object || !object->data.key)
416 STOREerr(STORE_F_STORE_GENERATE_KEY,
417 STORE_R_FAILED_GENERATING_KEY);
420 CRYPTO_add(&object->data.key->references,1,CRYPTO_LOCK_EVP_PKEY);
422 REF_PRINT("EVP_PKEY",data);
424 pkey = object->data.key;
425 STORE_OBJECT_free(object);
429 EVP_PKEY *STORE_get_private_key(STORE *s, OPENSSL_ITEM attributes[],
430 OPENSSL_ITEM parameters[])
432 STORE_OBJECT *object;
435 check_store(s,STORE_F_STORE_GET_PRIVATE_KEY,
436 get_object,STORE_R_NO_GET_OBJECT_FUNCTION);
438 object = s->meth->get_object(s, STORE_OBJECT_TYPE_PRIVATE_KEY,
439 attributes, parameters);
440 if (!object || !object->data.key || !object->data.key)
442 STOREerr(STORE_F_STORE_GET_PRIVATE_KEY,
443 STORE_R_FAILED_GETTING_KEY);
446 CRYPTO_add(&object->data.key->references,1,CRYPTO_LOCK_EVP_PKEY);
448 REF_PRINT("EVP_PKEY",data);
450 pkey = object->data.key;
451 STORE_OBJECT_free(object);
455 int STORE_store_private_key(STORE *s, EVP_PKEY *data, OPENSSL_ITEM attributes[],
456 OPENSSL_ITEM parameters[])
458 STORE_OBJECT *object;
461 check_store(s,STORE_F_STORE_PRIVATE_KEY,
462 store_object,STORE_R_NO_STORE_OBJECT_FUNCTION);
464 object = STORE_OBJECT_new();
467 STOREerr(STORE_F_STORE_PRIVATE_KEY,
468 ERR_R_MALLOC_FAILURE);
471 object->data.key = EVP_PKEY_new();
472 if (!object->data.key)
474 STOREerr(STORE_F_STORE_PRIVATE_KEY,
475 ERR_R_MALLOC_FAILURE);
479 CRYPTO_add(&data->references,1,CRYPTO_LOCK_EVP_PKEY);
481 REF_PRINT("EVP_PKEY",data);
483 object->data.key = data;
485 i = s->meth->store_object(s, STORE_OBJECT_TYPE_PRIVATE_KEY, object,
486 attributes, parameters);
488 STORE_OBJECT_free(object);
492 STOREerr(STORE_F_STORE_PRIVATE_KEY,
493 STORE_R_FAILED_STORING_KEY);
499 int STORE_revoke_private_key(STORE *s, OPENSSL_ITEM attributes[],
500 OPENSSL_ITEM parameters[])
504 check_store(s,STORE_F_STORE_REVOKE_PRIVATE_KEY,
505 revoke_object,STORE_R_NO_REVOKE_OBJECT_FUNCTION);
507 i = s->meth->revoke_object(s, STORE_OBJECT_TYPE_PRIVATE_KEY,
508 attributes, parameters);
512 STOREerr(STORE_F_STORE_REVOKE_PRIVATE_KEY,
513 STORE_R_FAILED_REVOKING_KEY);
519 int STORE_delete_private_key(STORE *s, OPENSSL_ITEM attributes[],
520 OPENSSL_ITEM parameters[])
522 check_store(s,STORE_F_STORE_DELETE_PRIVATE_KEY,
523 delete_object,STORE_R_NO_DELETE_OBJECT_FUNCTION);
525 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_PRIVATE_KEY,
526 attributes, parameters))
528 STOREerr(STORE_F_STORE_DELETE_PRIVATE_KEY,
529 STORE_R_FAILED_DELETING_KEY);
535 void *STORE_list_private_key_start(STORE *s, OPENSSL_ITEM attributes[],
536 OPENSSL_ITEM parameters[])
540 check_store(s,STORE_F_STORE_LIST_PRIVATE_KEY_START,
541 list_object_start,STORE_R_NO_LIST_OBJECT_START_FUNCTION);
543 handle = s->meth->list_object_start(s, STORE_OBJECT_TYPE_PRIVATE_KEY,
544 attributes, parameters);
547 STOREerr(STORE_F_STORE_LIST_PRIVATE_KEY_START,
548 STORE_R_FAILED_LISTING_KEYS);
554 EVP_PKEY *STORE_list_private_key_next(STORE *s, void *handle)
556 STORE_OBJECT *object;
559 check_store(s,STORE_F_STORE_LIST_PRIVATE_KEY_NEXT,
560 list_object_next,STORE_R_NO_LIST_OBJECT_NEXT_FUNCTION);
562 object = s->meth->list_object_next(s, handle);
563 if (!object || !object->data.key || !object->data.key)
565 STOREerr(STORE_F_STORE_LIST_PRIVATE_KEY_NEXT,
566 STORE_R_FAILED_LISTING_KEYS);
569 CRYPTO_add(&object->data.key->references,1,CRYPTO_LOCK_EVP_PKEY);
571 REF_PRINT("EVP_PKEY",data);
573 pkey = object->data.key;
574 STORE_OBJECT_free(object);
578 int STORE_list_private_key_end(STORE *s, void *handle)
580 check_store(s,STORE_F_STORE_LIST_PRIVATE_KEY_END,
581 list_object_end,STORE_R_NO_LIST_OBJECT_END_FUNCTION);
583 if (!s->meth->list_object_end(s, handle))
585 STOREerr(STORE_F_STORE_LIST_PRIVATE_KEY_END,
586 STORE_R_FAILED_LISTING_KEYS);
592 int STORE_list_private_key_endp(STORE *s, void *handle)
594 check_store(s,STORE_F_STORE_LIST_PRIVATE_KEY_ENDP,
595 list_object_endp,STORE_R_NO_LIST_OBJECT_ENDP_FUNCTION);
597 if (!s->meth->list_object_endp(s, handle))
599 STOREerr(STORE_F_STORE_LIST_PRIVATE_KEY_ENDP,
600 STORE_R_FAILED_LISTING_KEYS);
606 EVP_PKEY *STORE_get_public_key(STORE *s, OPENSSL_ITEM attributes[],
607 OPENSSL_ITEM parameters[])
609 STORE_OBJECT *object;
612 check_store(s,STORE_F_STORE_GET_PUBLIC_KEY,
613 get_object,STORE_R_NO_GET_OBJECT_FUNCTION);
615 object = s->meth->get_object(s, STORE_OBJECT_TYPE_PUBLIC_KEY,
616 attributes, parameters);
617 if (!object || !object->data.key || !object->data.key)
619 STOREerr(STORE_F_STORE_GET_PUBLIC_KEY,
620 STORE_R_FAILED_GETTING_KEY);
623 CRYPTO_add(&object->data.key->references,1,CRYPTO_LOCK_EVP_PKEY);
625 REF_PRINT("EVP_PKEY",data);
627 pkey = object->data.key;
628 STORE_OBJECT_free(object);
632 int STORE_store_public_key(STORE *s, EVP_PKEY *data, OPENSSL_ITEM attributes[],
633 OPENSSL_ITEM parameters[])
635 STORE_OBJECT *object;
638 check_store(s,STORE_F_STORE_PUBLIC_KEY,
639 store_object,STORE_R_NO_STORE_OBJECT_FUNCTION);
641 object = STORE_OBJECT_new();
644 STOREerr(STORE_F_STORE_PUBLIC_KEY,
645 ERR_R_MALLOC_FAILURE);
648 object->data.key = EVP_PKEY_new();
649 if (!object->data.key)
651 STOREerr(STORE_F_STORE_PUBLIC_KEY,
652 ERR_R_MALLOC_FAILURE);
656 CRYPTO_add(&data->references,1,CRYPTO_LOCK_EVP_PKEY);
658 REF_PRINT("EVP_PKEY",data);
660 object->data.key = data;
662 i = s->meth->store_object(s, STORE_OBJECT_TYPE_PUBLIC_KEY, object,
663 attributes, parameters);
665 STORE_OBJECT_free(object);
669 STOREerr(STORE_F_STORE_PUBLIC_KEY,
670 STORE_R_FAILED_STORING_KEY);
676 int STORE_revoke_public_key(STORE *s, OPENSSL_ITEM attributes[],
677 OPENSSL_ITEM parameters[])
681 check_store(s,STORE_F_STORE_REVOKE_PUBLIC_KEY,
682 revoke_object,STORE_R_NO_REVOKE_OBJECT_FUNCTION);
684 i = s->meth->revoke_object(s, STORE_OBJECT_TYPE_PUBLIC_KEY,
685 attributes, parameters);
689 STOREerr(STORE_F_STORE_REVOKE_PUBLIC_KEY,
690 STORE_R_FAILED_REVOKING_KEY);
696 int STORE_delete_public_key(STORE *s, OPENSSL_ITEM attributes[],
697 OPENSSL_ITEM parameters[])
699 check_store(s,STORE_F_STORE_DELETE_PUBLIC_KEY,
700 delete_object,STORE_R_NO_DELETE_OBJECT_FUNCTION);
702 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_PUBLIC_KEY,
703 attributes, parameters))
705 STOREerr(STORE_F_STORE_DELETE_PUBLIC_KEY,
706 STORE_R_FAILED_DELETING_KEY);
712 void *STORE_list_public_key_start(STORE *s, OPENSSL_ITEM attributes[],
713 OPENSSL_ITEM parameters[])
717 check_store(s,STORE_F_STORE_LIST_PUBLIC_KEY_START,
718 list_object_start,STORE_R_NO_LIST_OBJECT_START_FUNCTION);
720 handle = s->meth->list_object_start(s, STORE_OBJECT_TYPE_PUBLIC_KEY,
721 attributes, parameters);
724 STOREerr(STORE_F_STORE_LIST_PUBLIC_KEY_START,
725 STORE_R_FAILED_LISTING_KEYS);
731 EVP_PKEY *STORE_list_public_key_next(STORE *s, void *handle)
733 STORE_OBJECT *object;
736 check_store(s,STORE_F_STORE_LIST_PUBLIC_KEY_NEXT,
737 list_object_next,STORE_R_NO_LIST_OBJECT_NEXT_FUNCTION);
739 object = s->meth->list_object_next(s, handle);
740 if (!object || !object->data.key || !object->data.key)
742 STOREerr(STORE_F_STORE_LIST_PUBLIC_KEY_NEXT,
743 STORE_R_FAILED_LISTING_KEYS);
746 CRYPTO_add(&object->data.key->references,1,CRYPTO_LOCK_EVP_PKEY);
748 REF_PRINT("EVP_PKEY",data);
750 pkey = object->data.key;
751 STORE_OBJECT_free(object);
755 int STORE_list_public_key_end(STORE *s, void *handle)
757 check_store(s,STORE_F_STORE_LIST_PUBLIC_KEY_END,
758 list_object_end,STORE_R_NO_LIST_OBJECT_END_FUNCTION);
760 if (!s->meth->list_object_end(s, handle))
762 STOREerr(STORE_F_STORE_LIST_PUBLIC_KEY_END,
763 STORE_R_FAILED_LISTING_KEYS);
769 int STORE_list_public_key_endp(STORE *s, void *handle)
771 check_store(s,STORE_F_STORE_LIST_PUBLIC_KEY_ENDP,
772 list_object_endp,STORE_R_NO_LIST_OBJECT_ENDP_FUNCTION);
774 if (!s->meth->list_object_endp(s, handle))
776 STOREerr(STORE_F_STORE_LIST_PUBLIC_KEY_ENDP,
777 STORE_R_FAILED_LISTING_KEYS);
783 X509_CRL *STORE_generate_crl(STORE *s, OPENSSL_ITEM attributes[],
784 OPENSSL_ITEM parameters[])
786 STORE_OBJECT *object;
789 check_store(s,STORE_F_STORE_GENERATE_CRL,
790 generate_object,STORE_R_NO_GENERATE_CRL_FUNCTION);
792 object = s->meth->generate_object(s, STORE_OBJECT_TYPE_X509_CRL,
793 attributes, parameters);
794 if (!object || !object->data.crl)
796 STOREerr(STORE_F_STORE_GENERATE_CRL,
797 STORE_R_FAILED_GENERATING_CRL);
800 CRYPTO_add(&object->data.crl->references,1,CRYPTO_LOCK_X509_CRL);
802 REF_PRINT("X509_CRL",data);
804 crl = object->data.crl;
805 STORE_OBJECT_free(object);
809 X509_CRL *STORE_get_crl(STORE *s, OPENSSL_ITEM attributes[],
810 OPENSSL_ITEM parameters[])
812 STORE_OBJECT *object;
815 check_store(s,STORE_F_STORE_GET_CRL,
816 get_object,STORE_R_NO_GET_OBJECT_FUNCTION);
818 object = s->meth->get_object(s, STORE_OBJECT_TYPE_X509_CRL,
819 attributes, parameters);
820 if (!object || !object->data.crl)
822 STOREerr(STORE_F_STORE_GET_CRL,
823 STORE_R_FAILED_GETTING_KEY);
826 CRYPTO_add(&object->data.crl->references,1,CRYPTO_LOCK_X509_CRL);
828 REF_PRINT("X509_CRL",data);
830 crl = object->data.crl;
831 STORE_OBJECT_free(object);
835 int STORE_store_crl(STORE *s, X509_CRL *data, OPENSSL_ITEM attributes[],
836 OPENSSL_ITEM parameters[])
838 STORE_OBJECT *object;
841 check_store(s,STORE_F_STORE_CRL,
842 store_object,STORE_R_NO_STORE_OBJECT_FUNCTION);
844 object = STORE_OBJECT_new();
847 STOREerr(STORE_F_STORE_CRL,
848 ERR_R_MALLOC_FAILURE);
852 CRYPTO_add(&data->references,1,CRYPTO_LOCK_X509_CRL);
854 REF_PRINT("X509_CRL",data);
856 object->data.crl = data;
858 i = s->meth->store_object(s, STORE_OBJECT_TYPE_X509_CRL, object,
859 attributes, parameters);
861 STORE_OBJECT_free(object);
865 STOREerr(STORE_F_STORE_CRL,
866 STORE_R_FAILED_STORING_KEY);
872 int STORE_delete_crl(STORE *s, OPENSSL_ITEM attributes[],
873 OPENSSL_ITEM parameters[])
875 check_store(s,STORE_F_STORE_DELETE_CRL,
876 delete_object,STORE_R_NO_DELETE_OBJECT_FUNCTION);
878 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_X509_CRL,
879 attributes, parameters))
881 STOREerr(STORE_F_STORE_DELETE_CRL,
882 STORE_R_FAILED_DELETING_KEY);
888 void *STORE_list_crl_start(STORE *s, OPENSSL_ITEM attributes[],
889 OPENSSL_ITEM parameters[])
893 check_store(s,STORE_F_STORE_LIST_CRL_START,
894 list_object_start,STORE_R_NO_LIST_OBJECT_START_FUNCTION);
896 handle = s->meth->list_object_start(s, STORE_OBJECT_TYPE_X509_CRL,
897 attributes, parameters);
900 STOREerr(STORE_F_STORE_LIST_CRL_START,
901 STORE_R_FAILED_LISTING_KEYS);
907 X509_CRL *STORE_list_crl_next(STORE *s, void *handle)
909 STORE_OBJECT *object;
912 check_store(s,STORE_F_STORE_LIST_CRL_NEXT,
913 list_object_next,STORE_R_NO_LIST_OBJECT_NEXT_FUNCTION);
915 object = s->meth->list_object_next(s, handle);
916 if (!object || !object->data.crl)
918 STOREerr(STORE_F_STORE_LIST_CRL_NEXT,
919 STORE_R_FAILED_LISTING_KEYS);
922 CRYPTO_add(&object->data.crl->references,1,CRYPTO_LOCK_X509_CRL);
924 REF_PRINT("X509_CRL",data);
926 crl = object->data.crl;
927 STORE_OBJECT_free(object);
931 int STORE_list_crl_end(STORE *s, void *handle)
933 check_store(s,STORE_F_STORE_LIST_CRL_END,
934 list_object_end,STORE_R_NO_LIST_OBJECT_END_FUNCTION);
936 if (!s->meth->list_object_end(s, handle))
938 STOREerr(STORE_F_STORE_LIST_CRL_END,
939 STORE_R_FAILED_LISTING_KEYS);
945 int STORE_list_crl_endp(STORE *s, void *handle)
947 check_store(s,STORE_F_STORE_LIST_CRL_ENDP,
948 list_object_endp,STORE_R_NO_LIST_OBJECT_ENDP_FUNCTION);
950 if (!s->meth->list_object_endp(s, handle))
952 STOREerr(STORE_F_STORE_LIST_CRL_ENDP,
953 STORE_R_FAILED_LISTING_KEYS);
959 int STORE_store_number(STORE *s, BIGNUM *data, OPENSSL_ITEM attributes[],
960 OPENSSL_ITEM parameters[])
962 STORE_OBJECT *object;
965 check_store(s,STORE_F_STORE_NUMBER,
966 store_object,STORE_R_NO_STORE_OBJECT_NUMBER_FUNCTION);
968 object = STORE_OBJECT_new();
971 STOREerr(STORE_F_STORE_NUMBER,
972 ERR_R_MALLOC_FAILURE);
976 object->data.number = data;
978 i = s->meth->store_object(s, STORE_OBJECT_TYPE_NUMBER, object,
979 attributes, parameters);
981 STORE_OBJECT_free(object);
985 STOREerr(STORE_F_STORE_NUMBER,
986 STORE_R_FAILED_STORING_NUMBER);
992 BIGNUM *STORE_get_number(STORE *s, OPENSSL_ITEM attributes[],
993 OPENSSL_ITEM parameters[])
995 STORE_OBJECT *object;
998 check_store(s,STORE_F_STORE_GET_NUMBER,
999 get_object,STORE_R_NO_GET_OBJECT_NUMBER_FUNCTION);
1001 object = s->meth->get_object(s, STORE_OBJECT_TYPE_NUMBER, attributes,
1003 if (!object || !object->data.number)
1005 STOREerr(STORE_F_STORE_GET_NUMBER,
1006 STORE_R_FAILED_GETTING_NUMBER);
1009 n = object->data.number;
1010 object->data.number = NULL;
1011 STORE_OBJECT_free(object);
1015 int STORE_delete_number(STORE *s, OPENSSL_ITEM attributes[],
1016 OPENSSL_ITEM parameters[])
1018 check_store(s,STORE_F_STORE_DELETE_NUMBER,
1019 delete_object,STORE_R_NO_DELETE_NUMBER_FUNCTION);
1021 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_NUMBER, attributes,
1024 STOREerr(STORE_F_STORE_DELETE_NUMBER,
1025 STORE_R_FAILED_DELETING_NUMBER);
1031 int STORE_store_arbitrary(STORE *s, BUF_MEM *data, OPENSSL_ITEM attributes[],
1032 OPENSSL_ITEM parameters[])
1034 STORE_OBJECT *object;
1037 check_store(s,STORE_F_STORE_ARBITRARY,
1038 store_object,STORE_R_NO_STORE_OBJECT_ARBITRARY_FUNCTION);
1040 object = STORE_OBJECT_new();
1043 STOREerr(STORE_F_STORE_ARBITRARY,
1044 ERR_R_MALLOC_FAILURE);
1048 object->data.arbitrary = data;
1050 i = s->meth->store_object(s, STORE_OBJECT_TYPE_ARBITRARY, object,
1051 attributes, parameters);
1053 STORE_OBJECT_free(object);
1057 STOREerr(STORE_F_STORE_ARBITRARY,
1058 STORE_R_FAILED_STORING_ARBITRARY);
1064 BUF_MEM *STORE_get_arbitrary(STORE *s, OPENSSL_ITEM attributes[],
1065 OPENSSL_ITEM parameters[])
1067 STORE_OBJECT *object;
1070 check_store(s,STORE_F_STORE_GET_ARBITRARY,
1071 get_object,STORE_R_NO_GET_OBJECT_ARBITRARY_FUNCTION);
1073 object = s->meth->get_object(s, STORE_OBJECT_TYPE_ARBITRARY,
1074 attributes, parameters);
1075 if (!object || !object->data.arbitrary)
1077 STOREerr(STORE_F_STORE_GET_ARBITRARY,
1078 STORE_R_FAILED_GETTING_ARBITRARY);
1081 b = object->data.arbitrary;
1082 object->data.arbitrary = NULL;
1083 STORE_OBJECT_free(object);
1087 int STORE_delete_arbitrary(STORE *s, OPENSSL_ITEM attributes[],
1088 OPENSSL_ITEM parameters[])
1090 check_store(s,STORE_F_STORE_DELETE_ARBITRARY,
1091 delete_object,STORE_R_NO_DELETE_ARBITRARY_FUNCTION);
1093 if (!s->meth->delete_object(s, STORE_OBJECT_TYPE_ARBITRARY, attributes,
1096 STOREerr(STORE_F_STORE_DELETE_ARBITRARY,
1097 STORE_R_FAILED_DELETING_ARBITRARY);
1103 STORE_OBJECT *STORE_OBJECT_new(void)
1105 STORE_OBJECT *object = OPENSSL_malloc(sizeof(STORE_OBJECT));
1106 if (object) memset(object, 0, sizeof(STORE_OBJECT));
1109 void STORE_OBJECT_free(STORE_OBJECT *data)
1114 case STORE_OBJECT_TYPE_X509_CERTIFICATE:
1115 X509_free(data->data.x509.certificate);
1117 case STORE_OBJECT_TYPE_X509_CRL:
1118 X509_CRL_free(data->data.crl);
1120 case STORE_OBJECT_TYPE_PRIVATE_KEY:
1121 case STORE_OBJECT_TYPE_PUBLIC_KEY:
1122 EVP_PKEY_free(data->data.key);
1124 case STORE_OBJECT_TYPE_NUMBER:
1125 BN_free(data->data.number);
1127 case STORE_OBJECT_TYPE_ARBITRARY:
1128 BUF_MEM_free(data->data.arbitrary);
1134 IMPLEMENT_STACK_OF(STORE_OBJECT*)
1137 struct STORE_attr_info_st
1139 unsigned char set[(STORE_ATTR_TYPE_NUM + 8) / 8];
1143 unsigned char *sha1string;
1147 } values[STORE_ATTR_TYPE_NUM+1];
1148 size_t value_sizes[STORE_ATTR_TYPE_NUM+1];
1151 #define ATTR_IS_SET(a,i) ((i) > 0 && (i) < STORE_ATTR_TYPE_NUM \
1152 && ((a)->set[(i) / 8] & (1 << ((i) % 8))))
1153 #define SET_ATTRBIT(a,i) ((a)->set[(i) / 8] |= (1 << ((i) % 8)))
1154 #define CLEAR_ATTRBIT(a,i) ((a)->set[(i) / 8] &= ~(1 << ((i) % 8)))
1156 STORE_ATTR_INFO *STORE_ATTR_INFO_new(void)
1158 return (STORE_ATTR_INFO *)OPENSSL_malloc(sizeof(STORE_ATTR_INFO));
1160 static void STORE_ATTR_INFO_attr_free(STORE_ATTR_INFO *attrs,
1161 STORE_ATTR_TYPES code)
1163 if (ATTR_IS_SET(attrs,code))
1167 case STORE_ATTR_FRIENDLYNAME:
1168 case STORE_ATTR_EMAIL:
1169 case STORE_ATTR_FILENAME:
1170 STORE_ATTR_INFO_modify_cstr(attrs, code, NULL, 0);
1172 case STORE_ATTR_KEYID:
1173 case STORE_ATTR_ISSUERKEYID:
1174 case STORE_ATTR_SUBJECTKEYID:
1175 case STORE_ATTR_ISSUERSERIALHASH:
1176 case STORE_ATTR_CERTHASH:
1177 STORE_ATTR_INFO_modify_sha1str(attrs, code, NULL, 0);
1179 case STORE_ATTR_ISSUER:
1180 case STORE_ATTR_SUBJECT:
1181 STORE_ATTR_INFO_modify_dn(attrs, code, NULL);
1183 case STORE_ATTR_SERIAL:
1184 STORE_ATTR_INFO_modify_number(attrs, code, NULL);
1191 int STORE_ATTR_INFO_free(STORE_ATTR_INFO *attrs)
1196 for(i = 0; i++ < STORE_ATTR_TYPE_NUM;)
1197 STORE_ATTR_INFO_attr_free(attrs, i);
1198 OPENSSL_free(attrs);
1202 char *STORE_ATTR_INFO_get0_cstr(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code)
1206 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_CSTR,
1207 ERR_R_PASSED_NULL_PARAMETER);
1210 if (ATTR_IS_SET(attrs,code))
1211 return attrs->values[code].cstring;
1212 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_CSTR,
1216 unsigned char *STORE_ATTR_INFO_get0_sha1str(STORE_ATTR_INFO *attrs,
1217 STORE_ATTR_TYPES code)
1221 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_SHA1STR,
1222 ERR_R_PASSED_NULL_PARAMETER);
1225 if (ATTR_IS_SET(attrs,code))
1226 return attrs->values[code].sha1string;
1227 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_SHA1STR,
1231 X509_NAME *STORE_ATTR_INFO_get0_dn(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code)
1235 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_DN,
1236 ERR_R_PASSED_NULL_PARAMETER);
1239 if (ATTR_IS_SET(attrs,code))
1240 return attrs->values[code].dn;
1241 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_DN,
1245 BIGNUM *STORE_ATTR_INFO_get0_number(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code)
1249 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_NUMBER,
1250 ERR_R_PASSED_NULL_PARAMETER);
1253 if (ATTR_IS_SET(attrs,code))
1254 return attrs->values[code].number;
1255 STOREerr(STORE_F_STORE_ATTR_INFO_GET0_NUMBER,
1259 int STORE_ATTR_INFO_set_cstr(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1260 char *cstr, size_t cstr_size)
1264 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR,
1265 ERR_R_PASSED_NULL_PARAMETER);
1268 if (!ATTR_IS_SET(attrs,code))
1270 if ((attrs->values[code].cstring = BUF_strndup(cstr, cstr_size)))
1272 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR,
1273 ERR_R_MALLOC_FAILURE);
1276 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR, STORE_R_ALREADY_HAS_A_VALUE);
1279 int STORE_ATTR_INFO_set_sha1str(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1280 unsigned char *sha1str, size_t sha1str_size)
1284 STOREerr(STORE_F_STORE_ATTR_INFO_SET_SHA1STR,
1285 ERR_R_PASSED_NULL_PARAMETER);
1288 if (!ATTR_IS_SET(attrs,code))
1290 if ((attrs->values[code].sha1string =
1291 (unsigned char *)BUF_memdup(sha1str,
1294 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR,
1295 ERR_R_MALLOC_FAILURE);
1298 STOREerr(STORE_F_STORE_ATTR_INFO_SET_SHA1STR, STORE_R_ALREADY_HAS_A_VALUE);
1301 int STORE_ATTR_INFO_set_dn(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1306 STOREerr(STORE_F_STORE_ATTR_INFO_SET_DN,
1307 ERR_R_PASSED_NULL_PARAMETER);
1310 if (!ATTR_IS_SET(attrs,code))
1312 if ((attrs->values[code].dn = X509_NAME_dup(dn)))
1314 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR,
1315 ERR_R_MALLOC_FAILURE);
1318 STOREerr(STORE_F_STORE_ATTR_INFO_SET_DN, STORE_R_ALREADY_HAS_A_VALUE);
1321 int STORE_ATTR_INFO_set_number(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1326 STOREerr(STORE_F_STORE_ATTR_INFO_SET_NUMBER,
1327 ERR_R_PASSED_NULL_PARAMETER);
1330 if (!ATTR_IS_SET(attrs,code))
1332 if ((attrs->values[code].number = BN_dup(number)))
1334 STOREerr(STORE_F_STORE_ATTR_INFO_SET_CSTR,
1335 ERR_R_MALLOC_FAILURE);
1338 STOREerr(STORE_F_STORE_ATTR_INFO_SET_NUMBER, STORE_R_ALREADY_HAS_A_VALUE);
1341 int STORE_ATTR_INFO_modify_cstr(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1342 char *cstr, size_t cstr_size)
1346 STOREerr(STORE_F_STORE_ATTR_INFO_MODIFY_CSTR,
1347 ERR_R_PASSED_NULL_PARAMETER);
1350 if (ATTR_IS_SET(attrs,code))
1352 OPENSSL_free(attrs->values[code].cstring);
1353 attrs->values[code].cstring = NULL;
1354 CLEAR_ATTRBIT(attrs, code);
1356 return STORE_ATTR_INFO_set_cstr(attrs, code, cstr, cstr_size);
1358 int STORE_ATTR_INFO_modify_sha1str(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1359 unsigned char *sha1str, size_t sha1str_size)
1363 STOREerr(STORE_F_STORE_ATTR_INFO_MODIFY_SHA1STR,
1364 ERR_R_PASSED_NULL_PARAMETER);
1367 if (ATTR_IS_SET(attrs,code))
1369 OPENSSL_free(attrs->values[code].sha1string);
1370 attrs->values[code].sha1string = NULL;
1371 CLEAR_ATTRBIT(attrs, code);
1373 return STORE_ATTR_INFO_set_sha1str(attrs, code, sha1str, sha1str_size);
1375 int STORE_ATTR_INFO_modify_dn(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1380 STOREerr(STORE_F_STORE_ATTR_INFO_MODIFY_DN,
1381 ERR_R_PASSED_NULL_PARAMETER);
1384 if (ATTR_IS_SET(attrs,code))
1386 OPENSSL_free(attrs->values[code].dn);
1387 attrs->values[code].dn = NULL;
1388 CLEAR_ATTRBIT(attrs, code);
1390 return STORE_ATTR_INFO_set_dn(attrs, code, dn);
1392 int STORE_ATTR_INFO_modify_number(STORE_ATTR_INFO *attrs, STORE_ATTR_TYPES code,
1397 STOREerr(STORE_F_STORE_ATTR_INFO_MODIFY_NUMBER,
1398 ERR_R_PASSED_NULL_PARAMETER);
1401 if (ATTR_IS_SET(attrs,code))
1403 OPENSSL_free(attrs->values[code].number);
1404 attrs->values[code].number = NULL;
1405 CLEAR_ATTRBIT(attrs, code);
1407 return STORE_ATTR_INFO_set_number(attrs, code, number);
1410 struct attr_list_ctx_st
1412 OPENSSL_ITEM *attributes;
1414 void *STORE_parse_attrs_start(OPENSSL_ITEM *attributes)
1418 struct attr_list_ctx_st *context =
1419 (struct attr_list_ctx_st *)OPENSSL_malloc(sizeof(struct attr_list_ctx_st));
1421 context->attributes = attributes;
1423 STOREerr(STORE_F_STORE_PARSE_ATTRS_END,
1424 ERR_R_MALLOC_FAILURE);
1427 STOREerr(STORE_F_STORE_PARSE_ATTRS_END, ERR_R_PASSED_NULL_PARAMETER);
1430 STORE_ATTR_INFO *STORE_parse_attrs_next(void *handle)
1432 struct attr_list_ctx_st *context = (struct attr_list_ctx_st *)handle;
1434 if (context && context->attributes)
1436 STORE_ATTR_INFO *attrs = NULL;
1438 while(context->attributes
1439 && context->attributes->code != STORE_ATTR_OR
1440 && context->attributes->code != STORE_ATTR_END)
1442 switch(context->attributes->code)
1444 case STORE_ATTR_FRIENDLYNAME:
1445 case STORE_ATTR_EMAIL:
1446 case STORE_ATTR_FILENAME:
1447 if (!attrs) attrs = STORE_ATTR_INFO_new();
1450 STOREerr(STORE_F_STORE_PARSE_ATTRS_NEXT,
1451 ERR_R_MALLOC_FAILURE);
1454 STORE_ATTR_INFO_set_cstr(attrs,
1455 context->attributes->code,
1456 context->attributes->value,
1457 context->attributes->value_size);
1459 case STORE_ATTR_KEYID:
1460 case STORE_ATTR_ISSUERKEYID:
1461 case STORE_ATTR_SUBJECTKEYID:
1462 case STORE_ATTR_ISSUERSERIALHASH:
1463 case STORE_ATTR_CERTHASH:
1464 if (!attrs) attrs = STORE_ATTR_INFO_new();
1467 STOREerr(STORE_F_STORE_PARSE_ATTRS_NEXT,
1468 ERR_R_MALLOC_FAILURE);
1471 STORE_ATTR_INFO_set_sha1str(attrs,
1472 context->attributes->code,
1473 context->attributes->value,
1474 context->attributes->value_size);
1476 case STORE_ATTR_ISSUER:
1477 case STORE_ATTR_SUBJECT:
1478 if (!attrs) attrs = STORE_ATTR_INFO_new();
1481 STOREerr(STORE_F_STORE_PARSE_ATTRS_NEXT,
1482 ERR_R_MALLOC_FAILURE);
1485 STORE_ATTR_INFO_modify_dn(attrs,
1486 context->attributes->code,
1487 context->attributes->value);
1489 case STORE_ATTR_SERIAL:
1490 if (!attrs) attrs = STORE_ATTR_INFO_new();
1493 STOREerr(STORE_F_STORE_PARSE_ATTRS_NEXT,
1494 ERR_R_MALLOC_FAILURE);
1497 STORE_ATTR_INFO_modify_number(attrs,
1498 context->attributes->code,
1499 context->attributes->value);
1502 context->attributes++;
1504 if (context->attributes->code == STORE_ATTR_OR)
1505 context->attributes++;
1508 while(context->attributes
1509 && context->attributes->code != STORE_ATTR_OR
1510 && context->attributes->code != STORE_ATTR_END)
1511 context->attributes++;
1512 if (context->attributes->code == STORE_ATTR_OR)
1513 context->attributes++;
1516 STOREerr(STORE_F_STORE_PARSE_ATTRS_NEXT, ERR_R_PASSED_NULL_PARAMETER);
1519 int STORE_parse_attrs_end(void *handle)
1521 struct attr_list_ctx_st *context = (struct attr_list_ctx_st *)handle;
1523 if (context && context->attributes)
1526 OPENSSL_ITEM *attributes = context->attributes;
1528 OPENSSL_free(context);
1531 STOREerr(STORE_F_STORE_PARSE_ATTRS_END, ERR_R_PASSED_NULL_PARAMETER);
1535 int STORE_parse_attrs_endp(void *handle)
1537 struct attr_list_ctx_st *context = (struct attr_list_ctx_st *)handle;
1539 if (context && context->attributes)
1541 return context->attributes->code == STORE_ATTR_END;
1543 STOREerr(STORE_F_STORE_PARSE_ATTRS_END, ERR_R_PASSED_NULL_PARAMETER);
1547 static int attr_info_compare_compute_range(
1548 unsigned char *abits, unsigned char *bbits,
1549 unsigned int *alowp, unsigned int *ahighp,
1550 unsigned int *blowp, unsigned int *bhighp)
1552 unsigned int alow = (unsigned int)-1, ahigh = 0;
1553 unsigned int blow = (unsigned int)-1, bhigh = 0;
1556 for (i = 0; i < (STORE_ATTR_TYPE_NUM + 8) / 8; i++, abits++, bbits++)
1560 if (*abits < *bbits) res = -1;
1561 if (*abits > *bbits) res = 1;
1565 if (alow == (unsigned int)-1)
1568 if (!(*abits & 0x01)) alow++;
1569 if (!(*abits & 0x02)) alow++;
1570 if (!(*abits & 0x04)) alow++;
1571 if (!(*abits & 0x08)) alow++;
1572 if (!(*abits & 0x10)) alow++;
1573 if (!(*abits & 0x20)) alow++;
1574 if (!(*abits & 0x40)) alow++;
1577 if (!(*abits & 0x80)) ahigh++;
1578 if (!(*abits & 0x40)) ahigh++;
1579 if (!(*abits & 0x20)) ahigh++;
1580 if (!(*abits & 0x10)) ahigh++;
1581 if (!(*abits & 0x08)) ahigh++;
1582 if (!(*abits & 0x04)) ahigh++;
1583 if (!(*abits & 0x02)) ahigh++;
1587 if (blow == (unsigned int)-1)
1590 if (!(*bbits & 0x01)) blow++;
1591 if (!(*bbits & 0x02)) blow++;
1592 if (!(*bbits & 0x04)) blow++;
1593 if (!(*bbits & 0x08)) blow++;
1594 if (!(*bbits & 0x10)) blow++;
1595 if (!(*bbits & 0x20)) blow++;
1596 if (!(*bbits & 0x40)) blow++;
1599 if (!(*bbits & 0x80)) bhigh++;
1600 if (!(*bbits & 0x40)) bhigh++;
1601 if (!(*bbits & 0x20)) bhigh++;
1602 if (!(*bbits & 0x10)) bhigh++;
1603 if (!(*bbits & 0x08)) bhigh++;
1604 if (!(*bbits & 0x04)) bhigh++;
1605 if (!(*bbits & 0x02)) bhigh++;
1608 if (ahigh + alow < bhigh + blow) res = -1;
1609 if (ahigh + alow > bhigh + blow) res = 1;
1610 if (alowp) *alowp = alow;
1611 if (ahighp) *ahighp = ahigh;
1612 if (blowp) *blowp = blow;
1613 if (bhighp) *bhighp = bhigh;
1617 int STORE_ATTR_INFO_compare(STORE_ATTR_INFO *a, STORE_ATTR_INFO *b)
1619 if (a == b) return 0;
1622 return attr_info_compare_compute_range(a->set, b->set, 0, 0, 0, 0);
1624 int STORE_ATTR_INFO_in_range(STORE_ATTR_INFO *a, STORE_ATTR_INFO *b)
1626 unsigned int alow, ahigh, blow, bhigh;
1628 if (a == b) return 1;
1631 attr_info_compare_compute_range(a->set, b->set,
1632 &alow, &ahigh, &blow, &bhigh);
1633 if (alow >= blow && ahigh <= bhigh)
1637 int STORE_ATTR_INFO_in(STORE_ATTR_INFO *a, STORE_ATTR_INFO *b)
1639 unsigned char *abits, *bbits;
1642 if (a == b) return 1;
1647 for (i = 0; i < (STORE_ATTR_TYPE_NUM + 8) / 8; i++, abits++, bbits++)
1649 if (*abits && (*bbits & *abits) != *abits)
1654 int STORE_ATTR_INFO_in_ex(STORE_ATTR_INFO *a, STORE_ATTR_INFO *b)
1658 if (a == b) return 1;
1659 if (!STORE_ATTR_INFO_in(a, b)) return 0;
1660 for (i = 1; i < STORE_ATTR_TYPE_NUM; i++)
1661 if (ATTR_IS_SET(a, i))
1665 case STORE_ATTR_FRIENDLYNAME:
1666 case STORE_ATTR_EMAIL:
1667 case STORE_ATTR_FILENAME:
1668 if (strcmp(a->values[i].cstring,
1669 b->values[i].cstring))
1672 case STORE_ATTR_KEYID:
1673 case STORE_ATTR_ISSUERKEYID:
1674 case STORE_ATTR_SUBJECTKEYID:
1675 case STORE_ATTR_ISSUERSERIALHASH:
1676 case STORE_ATTR_CERTHASH:
1677 if (memcmp(a->values[i].sha1string,
1678 b->values[i].sha1string,
1682 case STORE_ATTR_ISSUER:
1683 case STORE_ATTR_SUBJECT:
1684 if (X509_NAME_cmp(a->values[i].dn,
1688 case STORE_ATTR_SERIAL:
1689 if (BN_cmp(a->values[i].number,
1690 b->values[i].number))