2 * Copyright (C) 2008, 2009, 2010 Free Software Foundation, Inc.
4 * Author: David Marín Carreño
6 * This file is part of GnuTLS.
8 * GnuTLS is free software; you can redistribute it and/or modify it
9 * under the terms of the GNU General Public License as published by
10 * the Free Software Foundation; either version 3 of the License, or
11 * (at your option) any later version.
13 * GnuTLS is distributed in the hope that it will be useful, but
14 * WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 * General Public License for more details.
18 * You should have received a copy of the GNU General Public License
19 * along with GnuTLS; if not, write to the Free Software Foundation,
20 * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
31 #include <gnutls/gnutls.h>
32 #include <gnutls/x509.h>
37 tls_log_func (int level
, const char *str
)
39 fprintf (stderr
, "%s |<%d>| %s", "crq_key_id", level
, str
);
45 gnutls_x509_privkey_t pkey
;
46 gnutls_x509_crq_t crq
;
48 size_t pkey_key_id_len
;
49 unsigned char *pkey_key_id
= NULL
;
51 size_t crq_key_id_len
;
52 unsigned char *crq_key_id
= NULL
;
54 gnutls_pk_algorithm_t algorithm
;
58 ret
= gnutls_global_init ();
60 fail ("gnutls_global_init: %d\n", ret
);
62 gnutls_global_set_log_function (tls_log_func
);
64 gnutls_global_set_log_level (4711);
66 for (algorithm
= GNUTLS_PK_RSA
; algorithm
<= GNUTLS_PK_DSA
; algorithm
++)
68 ret
= gnutls_x509_crq_init (&crq
);
70 fail ("gnutls_x509_crq_init: %d\n", ret
);
72 ret
= gnutls_x509_privkey_init (&pkey
);
75 fail ("gnutls_x509_privkey_init: %d\n", ret
);
78 ret
= gnutls_x509_privkey_generate (pkey
, algorithm
, 1024, 0);
81 fail ("gnutls_x509_privkey_generate (rsa): %d\n", ret
);
85 success ("Key[%s] generation ok: %d\n",
86 gnutls_pk_algorithm_get_name (algorithm
), ret
);
90 ret
= gnutls_x509_privkey_get_key_id (pkey
, 0, pkey_key_id
,
92 if (ret
!= GNUTLS_E_SHORT_MEMORY_BUFFER
)
94 fail ("gnutls_x509_privkey_get_key_id incorrectly returns %d\n",
98 pkey_key_id
= malloc (sizeof (unsigned char) * pkey_key_id_len
);
99 ret
= gnutls_x509_privkey_get_key_id (pkey
, 0, pkey_key_id
,
101 if (ret
!= GNUTLS_E_SUCCESS
)
103 fail ("gnutls_x509_privkey_get_key_id incorrectly returns %d\n",
107 ret
= gnutls_x509_crq_set_version (crq
, 1);
110 fail ("gnutls_x509_crq_set_version: %d\n", ret
);
113 ret
= gnutls_x509_crq_set_key (crq
, pkey
);
116 fail ("gnutls_x509_crq_set_key: %d\n", ret
);
119 ret
= gnutls_x509_crq_set_dn_by_oid (crq
, GNUTLS_OID_X520_COMMON_NAME
,
123 fail ("gnutls_x509_crq_set_dn_by_oid: %d\n", ret
);
126 ret
= gnutls_x509_crq_sign (crq
, pkey
);
129 fail ("gnutls_x509_crq_sign: %d\n", ret
);
133 ret
= gnutls_x509_crq_get_key_id (crq
, 0, crq_key_id
, &crq_key_id_len
);
134 if (ret
!= GNUTLS_E_SHORT_MEMORY_BUFFER
)
136 fail ("gnutls_x509_crq_get_key_id incorrectly returns %d\n", ret
);
139 crq_key_id
= malloc (sizeof (unsigned char) * crq_key_id_len
);
140 ret
= gnutls_x509_crq_get_key_id (crq
, 0, crq_key_id
, &crq_key_id_len
);
141 if (ret
!= GNUTLS_E_SUCCESS
)
143 fail ("gnutls_x509_crq_get_key_id incorrectly returns %d\n", ret
);
146 if (crq_key_id_len
== pkey_key_id_len
)
148 ret
= memcmp (crq_key_id
, pkey_key_id
, crq_key_id_len
);
152 success ("Key ids are identical. OK.\n");
156 fail ("Key ids differ incorrectly: %d\n", ret
);
161 fail ("Key_id lengths differ incorrectly: %d - %d\n",
162 (int) crq_key_id_len
, (int) pkey_key_id_len
);
178 gnutls_x509_crq_deinit (crq
);
179 gnutls_x509_privkey_deinit (pkey
);
182 gnutls_global_deinit ();