blob: 01860677641b7a0c215d4c7dbbe7f93205d9f75e [file] [log] [blame]
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -08001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
2/**
Zhiyi Zhangaf7c2902019-03-14 22:13:21 -07003 * Copyright (c) 2017-2019, Regents of the University of California.
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -08004 *
5 * This file is part of ndncert, a certificate management system based on NDN.
6 *
7 * ndncert is free software: you can redistribute it and/or modify it under the terms
8 * of the GNU General Public License as published by the Free Software Foundation, either
9 * version 3 of the License, or (at your option) any later version.
10 *
11 * ndncert is distributed in the hope that it will be useful, but WITHOUT ANY
12 * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A
13 * PARTICULAR PURPOSE. See the GNU General Public License for more details.
14 *
15 * You should have received copies of the GNU General Public License along with
16 * ndncert, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
17 *
18 * See AUTHORS.md for complete list of ndncert authors and contributors.
19 */
20
21#ifndef NDNCERT_CA_CONFIG_HPP
22#define NDNCERT_CA_CONFIG_HPP
23
Zhiyi Zhang5ebeb692017-03-10 14:13:01 -080024#include "certificate-request.hpp"
Zhiyi Zhangad6cf932017-10-26 16:19:15 -070025#include "client-config.hpp"
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080026#include <ndn-cxx/security/v2/certificate.hpp>
27
28namespace ndn {
29namespace ndncert {
30
Zhiyi Zhang7420cf52017-12-18 18:59:21 +080031/**
32 * @brief The function should be able to convert a probe info string to an identity name
33 *
34 * The function should throw exceptions when there is an unexpected input.
35 */
Yufeng Zhang424d0362019-06-12 16:48:27 -070036using ProbeHandler = function<std::string/*identity name*/ (const JsonSection& json/*requester input*/)>;
Zhiyi Zhang7420cf52017-12-18 18:59:21 +080037
38/**
Zhiyi Zhang343cdfb2018-01-17 12:04:28 -080039 * @brief The function would be invoked whenever the certificate request status gets update
40 *
41 * The callback is used to notice the CA application or CA command line tool. The callback is
42 * fired whenever a request instance is created, challenge status is updated, and when certificate
43 * is issued.
Zhiyi Zhang7420cf52017-12-18 18:59:21 +080044 */
Zhiyi Zhang343cdfb2018-01-17 12:04:28 -080045using StatusUpdateCallback = function<void (const CertificateRequest&/*the latest request info*/)>;
Zhiyi Zhang7420cf52017-12-18 18:59:21 +080046
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080047/**
48 * @brief Represents a CA configuration instance
Zhiyi Zhangad6cf932017-10-26 16:19:15 -070049 *
50 * For CA configuration format, please refer to:
51 * https://github.com/named-data/ndncert/wiki/Ca-Configuration-Sample
52 *
53 * @note Changes made to CaConfig won't be written back to the config
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080054 */
55class CaConfig
56{
57public:
58 /**
59 * @brief Error that can be thrown from CaConfig
60 */
61 class Error : public std::runtime_error
62 {
63 public:
Zhiyi Zhang06d6ae92017-03-08 14:59:45 -080064 using std::runtime_error::runtime_error;
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080065 };
66
67public:
Zhiyi Zhang8da54d62019-11-21 00:03:05 -080068 /**
69 * @throw CaConfig::Error when config file does not exist
70 * @throw CaConfig::Error when the JSON text in the file cannot be parsed correctly
71 * @throw CaConfig::Error when the ca-prefix attribute in JSON text is empty
72 * @throw CaConfig::Error when the challenge is not specified or is not supported
73 */
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080074 void
Zhiyi Zhang06d6ae92017-03-08 14:59:45 -080075 load(const std::string& fileName);
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080076
Zhiyi Zhang06d6ae92017-03-08 14:59:45 -080077private:
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080078 void
Zhiyi Zhangad6cf932017-10-26 16:19:15 -070079 parse(const JsonSection& configJson);
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080080
Zhiyi Zhang06d6ae92017-03-08 14:59:45 -080081 std::list<std::string>
Zhiyi Zhang5ebeb692017-03-10 14:13:01 -080082 parseChallengeList(const JsonSection& configSection);
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -080083
84public:
Zhiyi Zhangaf7c2902019-03-14 22:13:21 -070085 // basic info
86 Name m_caName;
87
88 // essential config
89 time::seconds m_freshnessPeriod;
90 time::days m_validityPeriod;
91 std::list<std::string> m_supportedChallenges;
92
93 // optional parameters
94 std::string m_probe;
95 std::string m_caInfo;
96
97 // callbacks
98 ProbeHandler m_probeHandler;
99 StatusUpdateCallback m_statusUpdateCallback;
Zhiyi Zhangdaf2fd72017-01-19 11:31:35 -0800100};
101
102} // namespace ndncert
103} // namespace ndn
104
105#endif // NDNCERT_CA_CONFIG_HPP