Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 1 | #include "config.h" |
| 2 | |
| 3 | #include "csr.hpp" |
| 4 | |
Nan Zhou | 014be0b | 2021-12-28 18:00:14 -0800 | [diff] [blame] | 5 | #include <openssl/bio.h> |
| 6 | #include <openssl/buffer.h> |
| 7 | #include <openssl/ossl_typ.h> |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 8 | #include <openssl/pem.h> |
Nan Zhou | 014be0b | 2021-12-28 18:00:14 -0800 | [diff] [blame] | 9 | #include <openssl/x509.h> |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 10 | |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 11 | #include <phosphor-logging/elog-errors.hpp> |
| 12 | #include <phosphor-logging/elog.hpp> |
Nan Zhou | 014be0b | 2021-12-28 18:00:14 -0800 | [diff] [blame] | 13 | #include <phosphor-logging/log.hpp> |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 14 | #include <xyz/openbmc_project/Certs/error.hpp> |
| 15 | #include <xyz/openbmc_project/Common/error.hpp> |
| 16 | |
Patrick Williams | 223e460 | 2023-05-10 07:51:11 -0500 | [diff] [blame] | 17 | #include <cstdio> |
| 18 | #include <filesystem> |
| 19 | #include <memory> |
| 20 | #include <utility> |
| 21 | |
Nan Zhou | e1289ad | 2021-12-28 11:02:56 -0800 | [diff] [blame] | 22 | namespace phosphor::certs |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 23 | { |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 24 | |
| 25 | using ::phosphor::logging::elog; |
| 26 | using ::phosphor::logging::entry; |
| 27 | using ::phosphor::logging::level; |
| 28 | using ::phosphor::logging::log; |
| 29 | using ::sdbusplus::xyz::openbmc_project::Common::Error::InternalFailure; |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 30 | namespace fs = std::filesystem; |
| 31 | |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 32 | using X509ReqPtr = std::unique_ptr<X509_REQ, decltype(&::X509_REQ_free)>; |
| 33 | using BIOPtr = std::unique_ptr<BIO, decltype(&::BIO_free_all)>; |
| 34 | |
Patrick Williams | b3dbfb3 | 2022-07-22 19:26:57 -0500 | [diff] [blame] | 35 | CSR::CSR(sdbusplus::bus_t& bus, const char* path, std::string&& installPath, |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 36 | const Status& status) : |
Patrick Williams | ebd21ba | 2022-04-05 14:58:53 -0500 | [diff] [blame] | 37 | internal::CSRInterface(bus, path, |
| 38 | internal::CSRInterface::action::defer_emit), |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 39 | objectPath(path), certInstallPath(std::move(installPath)), csrStatus(status) |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 40 | { |
| 41 | // Emit deferred signal. |
| 42 | this->emit_object_added(); |
| 43 | } |
| 44 | |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 45 | std::string CSR::csr() |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 46 | { |
Nan Zhou | e3d47cd | 2022-09-16 03:41:53 +0000 | [diff] [blame] | 47 | if (csrStatus == Status::failure) |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 48 | { |
| 49 | log<level::ERR>("Failure in Generating CSR"); |
| 50 | elog<InternalFailure>(); |
| 51 | } |
| 52 | fs::path csrFilePath = certInstallPath; |
Nan Zhou | 718eef3 | 2021-12-28 11:03:30 -0800 | [diff] [blame] | 53 | csrFilePath = csrFilePath.parent_path() / defaultCSRFileName; |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 54 | if (!fs::exists(csrFilePath)) |
| 55 | { |
| 56 | log<level::ERR>("CSR file doesn't exists", |
| 57 | entry("FILENAME=%s", csrFilePath.c_str())); |
| 58 | elog<InternalFailure>(); |
| 59 | } |
| 60 | |
| 61 | FILE* fp = std::fopen(csrFilePath.c_str(), "r"); |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 62 | X509ReqPtr x509Req(PEM_read_X509_REQ(fp, nullptr, nullptr, nullptr), |
| 63 | ::X509_REQ_free); |
Nan Zhou | cfb5802 | 2021-12-28 11:02:26 -0800 | [diff] [blame] | 64 | if (x509Req == nullptr || fp == nullptr) |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 65 | { |
Nan Zhou | cfb5802 | 2021-12-28 11:02:26 -0800 | [diff] [blame] | 66 | if (fp != nullptr) |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 67 | { |
| 68 | std::fclose(fp); |
| 69 | } |
Nan Zhou | bf3cf75 | 2021-12-28 11:02:07 -0800 | [diff] [blame] | 70 | log<level::ERR>("ERROR occurred while reading CSR file", |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 71 | entry("FILENAME=%s", csrFilePath.c_str())); |
| 72 | elog<InternalFailure>(); |
| 73 | } |
| 74 | std::fclose(fp); |
| 75 | |
Nan Zhou | cf06ccd | 2021-12-28 16:25:45 -0800 | [diff] [blame] | 76 | BIOPtr bio(BIO_new(BIO_s_mem()), ::BIO_free_all); |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 77 | int ret = PEM_write_bio_X509_REQ(bio.get(), x509Req.get()); |
| 78 | if (ret <= 0) |
| 79 | { |
Nan Zhou | bf3cf75 | 2021-12-28 11:02:07 -0800 | [diff] [blame] | 80 | log<level::ERR>("Error occurred while calling PEM_write_bio_X509_REQ"); |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 81 | elog<InternalFailure>(); |
| 82 | } |
| 83 | |
Nan Zhou | cfb5802 | 2021-12-28 11:02:26 -0800 | [diff] [blame] | 84 | BUF_MEM* mem = nullptr; |
Patrick Williams | e129be3 | 2021-04-30 20:35:19 -0500 | [diff] [blame] | 85 | BIO_get_mem_ptr(bio.get(), &mem); |
| 86 | std::string pem(mem->data, mem->length); |
| 87 | return pem; |
| 88 | } |
| 89 | |
Nan Zhou | e1289ad | 2021-12-28 11:02:56 -0800 | [diff] [blame] | 90 | } // namespace phosphor::certs |