blob: 41c5d56099bfab4a2f5a28443d789fa9a6aad88c [file] [log] [blame]
Zhiyi Zhang3f20f952020-11-19 19:26:43 -08001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesavento0dc02012021-11-23 22:55:03 -05002/*
Davide Pesavento0d1d11c2022-04-11 22:11:34 -04003 * Copyright (c) 2017-2022, Regents of the University of California.
Zhiyi Zhang3f20f952020-11-19 19:26:43 -08004 *
5 * This file is part of ndncert, a certificate management system based on NDN.
6 *
7 * ndncert is free software: you can redistribute it and/or modify it under the terms
8 * of the GNU General Public License as published by the Free Software Foundation, either
9 * version 3 of the License, or (at your option) any later version.
10 *
11 * ndncert is distributed in the hope that it will be useful, but WITHOUT ANY
12 * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A
13 * PARTICULAR PURPOSE. See the GNU General Public License for more details.
14 *
15 * You should have received copies of the GNU General Public License along with
16 * ndncert, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
17 *
18 * See AUTHORS.md for complete list of ndncert authors and contributors.
19 */
20
21#include "detail/ca-profile.hpp"
Zhiyi Zhang84e11842020-11-19 20:03:23 -080022#include "challenge/challenge-module.hpp"
Davide Pesavento0dc02012021-11-23 22:55:03 -050023
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080024#include <ndn-cxx/util/io.hpp>
Davide Pesavento0dc02012021-11-23 22:55:03 -050025
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080026#include <boost/filesystem.hpp>
27
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080028namespace ndncert {
29
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080030CaProfile
31CaProfile::fromJson(const JsonSection& json)
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080032{
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080033 CaProfile profile;
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080034 // CA prefix
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080035 profile.caPrefix = Name(json.get(CONFIG_CA_PREFIX, ""));
36 if (profile.caPrefix.empty()) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080037 NDN_THROW(std::runtime_error("Cannot parse ca-prefix from the config file"));
38 }
39 // CA info
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080040 profile.caInfo = json.get(CONFIG_CA_INFO, "");
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080041 // CA max validity period
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080042 profile.maxValidityPeriod = time::seconds(json.get(CONFIG_MAX_VALIDITY_PERIOD, 86400));
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080043 // CA max suffix length
Davide Pesavento0d1d11c2022-04-11 22:11:34 -040044 profile.maxSuffixLength = std::nullopt;
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080045 auto maxSuffixLength = json.get_optional<size_t>(CONFIG_MAX_SUFFIX_LENGTH);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080046 if (maxSuffixLength) {
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080047 profile.maxSuffixLength = *maxSuffixLength;
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080048 }
49 // probe parameter keys
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080050 profile.probeParameterKeys.clear();
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080051 auto probeParametersJson = json.get_child_optional(CONFIG_PROBE_PARAMETERS);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080052 if (probeParametersJson) {
53 for (const auto& item : *probeParametersJson) {
54 auto probeParameter = item.second.get(CONFIG_PROBE_PARAMETER, "");
55 probeParameter = boost::algorithm::to_lower_copy(probeParameter);
56 if (probeParameter == "") {
57 NDN_THROW(std::runtime_error("Probe parameter key cannot be empty."));
58 }
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080059 profile.probeParameterKeys.push_back(probeParameter);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080060 }
61 }
62 // supported challenges
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080063 profile.supportedChallenges.clear();
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080064 auto challengeListJson = json.get_child_optional(CONFIG_SUPPORTED_CHALLENGES);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080065 if (challengeListJson) {
66 for (const auto& item : *challengeListJson) {
67 auto challengeType = item.second.get(CONFIG_CHALLENGE, "");
68 challengeType = boost::algorithm::to_lower_copy(challengeType);
69 if (challengeType == "") {
tylerliuf26d41b2021-10-12 16:50:16 -070070 NDN_THROW(std::runtime_error("Challenge type cannot be empty."));
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080071 }
72 if (!ChallengeModule::isChallengeSupported(challengeType)) {
73 NDN_THROW(std::runtime_error("Challenge " + challengeType + " is not supported."));
74 }
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080075 profile.supportedChallenges.push_back(challengeType);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080076 }
77 }
78 // anchor certificate
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080079 profile.cert = nullptr;
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080080 auto certificateStr = json.get(CONFIG_CERTIFICATE, "");
Davide Pesavento0d1d11c2022-04-11 22:11:34 -040081 if (!certificateStr.empty()) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080082 std::istringstream ss(certificateStr);
Davide Pesavento0dc02012021-11-23 22:55:03 -050083 profile.cert = ndn::io::load<Certificate>(ss);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080084 }
Zhiyi Zhang1e418f22020-11-19 19:49:32 -080085 return profile;
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080086}
87
88JsonSection
89CaProfile::toJson() const
90{
91 JsonSection caItem;
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080092 caItem.put(CONFIG_CA_PREFIX, caPrefix.toUri());
93 caItem.put(CONFIG_CA_INFO, caInfo);
94 caItem.put(CONFIG_MAX_VALIDITY_PERIOD, maxValidityPeriod.count());
95 if (maxSuffixLength) {
96 caItem.put(CONFIG_MAX_SUFFIX_LENGTH, *maxSuffixLength);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080097 }
Zhiyi Zhang44c6a352020-12-14 10:57:17 -080098 if (!probeParameterKeys.empty()) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -080099 JsonSection probeParametersJson;
Zhiyi Zhang44c6a352020-12-14 10:57:17 -0800100 for (const auto& key : probeParameterKeys) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800101 JsonSection keyJson;
102 keyJson.put(CONFIG_PROBE_PARAMETER, key);
Davide Pesavento0d1d11c2022-04-11 22:11:34 -0400103 probeParametersJson.push_back({"", keyJson});
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800104 }
105 caItem.add_child("", probeParametersJson);
106 }
Zhiyi Zhang44c6a352020-12-14 10:57:17 -0800107 if (!supportedChallenges.empty()) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800108 JsonSection challengeListJson;
Zhiyi Zhang44c6a352020-12-14 10:57:17 -0800109 for (const auto& challenge : supportedChallenges) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800110 JsonSection challengeJson;
111 challengeJson.put(CONFIG_CHALLENGE, challenge);
Davide Pesavento0d1d11c2022-04-11 22:11:34 -0400112 challengeListJson.push_back({"", challengeJson});
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800113 }
114 caItem.add_child("", challengeListJson);
115 }
Zhiyi Zhang44c6a352020-12-14 10:57:17 -0800116 if (cert != nullptr) {
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800117 std::stringstream ss;
Davide Pesavento0dc02012021-11-23 22:55:03 -0500118 ndn::io::save(*cert, ss);
Zhiyi Zhang3f20f952020-11-19 19:26:43 -0800119 caItem.put("certificate", ss.str());
120 }
121 return caItem;
122}
123
124} // namespace ndncert