mirror of
https://github.com/curl/curl.git
synced 2025-01-12 13:55:11 +08:00
78d6232f1f
We remove support for building curl with gskit. - This is a niche TLS library, only running on some IBM systems - no regular curl contributors use this backend - no CI builds use or verify this backend - gskit, or the curl adaption for it, lacks many modern TLS features making it an inferior solution - build breakages in this code take weeks or more to get detected - fixing gskit code is mostly done "flying blind" This removal has been advertized in DEPRECATED in Jan 2, 2023 and it has been mentioned on the curl-library mailing list. It could be brought back, this is not a ban. Given proper effort and will, gskit support is welcome back into the curl TLS backend family. Closes #11460
81 lines
2.8 KiB
C
81 lines
2.8 KiB
C
#ifndef HEADER_CURL_X509ASN1_H
|
|
#define HEADER_CURL_X509ASN1_H
|
|
|
|
/***************************************************************************
|
|
* _ _ ____ _
|
|
* Project ___| | | | _ \| |
|
|
* / __| | | | |_) | |
|
|
* | (__| |_| | _ <| |___
|
|
* \___|\___/|_| \_\_____|
|
|
*
|
|
* Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al.
|
|
*
|
|
* This software is licensed as described in the file COPYING, which
|
|
* you should have received as part of this distribution. The terms
|
|
* are also available at https://curl.se/docs/copyright.html.
|
|
*
|
|
* You may opt to use, copy, modify, merge, publish, distribute and/or sell
|
|
* copies of the Software, and permit persons to whom the Software is
|
|
* furnished to do so, under the terms of the COPYING file.
|
|
*
|
|
* This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY
|
|
* KIND, either express or implied.
|
|
*
|
|
* SPDX-License-Identifier: curl
|
|
*
|
|
***************************************************************************/
|
|
|
|
#include "curl_setup.h"
|
|
|
|
#if defined(USE_GNUTLS) || defined(USE_WOLFSSL) || \
|
|
defined(USE_SCHANNEL) || defined(USE_SECTRANSP)
|
|
|
|
#include "cfilters.h"
|
|
#include "urldata.h"
|
|
|
|
/*
|
|
* Types.
|
|
*/
|
|
|
|
/* ASN.1 parsed element. */
|
|
struct Curl_asn1Element {
|
|
const char *header; /* Pointer to header byte. */
|
|
const char *beg; /* Pointer to element data. */
|
|
const char *end; /* Pointer to 1st byte after element. */
|
|
unsigned char class; /* ASN.1 element class. */
|
|
unsigned char tag; /* ASN.1 element tag. */
|
|
bool constructed; /* Element is constructed. */
|
|
};
|
|
|
|
/* X509 certificate: RFC 5280. */
|
|
struct Curl_X509certificate {
|
|
struct Curl_asn1Element certificate;
|
|
struct Curl_asn1Element version;
|
|
struct Curl_asn1Element serialNumber;
|
|
struct Curl_asn1Element signatureAlgorithm;
|
|
struct Curl_asn1Element signature;
|
|
struct Curl_asn1Element issuer;
|
|
struct Curl_asn1Element notBefore;
|
|
struct Curl_asn1Element notAfter;
|
|
struct Curl_asn1Element subject;
|
|
struct Curl_asn1Element subjectPublicKeyInfo;
|
|
struct Curl_asn1Element subjectPublicKeyAlgorithm;
|
|
struct Curl_asn1Element subjectPublicKey;
|
|
struct Curl_asn1Element issuerUniqueID;
|
|
struct Curl_asn1Element subjectUniqueID;
|
|
struct Curl_asn1Element extensions;
|
|
};
|
|
|
|
/*
|
|
* Prototypes.
|
|
*/
|
|
|
|
int Curl_parseX509(struct Curl_X509certificate *cert,
|
|
const char *beg, const char *end);
|
|
CURLcode Curl_extract_certinfo(struct Curl_easy *data, int certnum,
|
|
const char *beg, const char *end);
|
|
CURLcode Curl_verifyhost(struct Curl_cfilter *cf, struct Curl_easy *data,
|
|
const char *beg, const char *end);
|
|
#endif /* USE_GNUTLS or USE_WOLFSSL or USE_SCHANNEL or USE_SECTRANSP */
|
|
#endif /* HEADER_CURL_X509ASN1_H */
|