blob: a7372109c3823d5a592ea0d62e08a6823b2a104f [file] [log] [blame]
henrike@webrtc.orgf0488722014-05-13 18:00:261/*
2 * Copyright 2004 The WebRTC Project Authors. All rights reserved.
3 *
4 * Use of this source code is governed by a BSD-style license
5 * that can be found in the LICENSE file in the root of the source
6 * tree. An additional intellectual property rights grant can be found
7 * in the file PATENTS. All contributing project authors may
8 * be found in the AUTHORS file in the root of the source tree.
9 */
10
Steve Anton10542f22019-01-11 17:11:0011#ifndef RTC_BASE_OPENSSL_IDENTITY_H_
12#define RTC_BASE_OPENSSL_IDENTITY_H_
henrike@webrtc.orgf0488722014-05-13 18:00:2613
Yves Gerey988cc082018-10-23 10:03:0114#include <openssl/ossl_typ.h>
henrike@webrtc.orgf0488722014-05-13 18:00:2615
Yves Gerey988cc082018-10-23 10:03:0116#include <ctime>
17#include <memory>
Henrik Kjellanderec78f1c2017-06-29 05:52:5018#include <string>
19
Steve Anton10542f22019-01-11 17:11:0020#include "rtc_base/openssl_certificate.h"
Taylor Brandstetter165c6182020-12-11 00:23:0321#include "rtc_base/openssl_key_pair.h"
Steve Anton10542f22019-01-11 17:11:0022#include "rtc_base/ssl_certificate.h"
23#include "rtc_base/ssl_identity.h"
Henrik Kjellanderec78f1c2017-06-29 05:52:5024
Henrik Kjellanderec78f1c2017-06-29 05:52:5025namespace rtc {
26
Henrik Kjellanderec78f1c2017-06-29 05:52:5027// Holds a keypair and certificate together, and a method to generate
28// them consistently.
Benjamin Wright61c5cc82018-10-27 00:50:0029class OpenSSLIdentity final : public SSLIdentity {
Henrik Kjellanderec78f1c2017-06-29 05:52:5030 public:
Harald Alvestrand8515d5a2020-03-20 21:51:3231 static std::unique_ptr<OpenSSLIdentity> CreateWithExpiration(
Ali Tofigh58d861c2022-03-24 23:51:2032 absl::string_view common_name,
Harald Alvestrand8515d5a2020-03-20 21:51:3233 const KeyParams& key_params,
34 time_t certificate_lifetime);
35 static std::unique_ptr<OpenSSLIdentity> CreateForTest(
36 const SSLIdentityParams& params);
37 static std::unique_ptr<SSLIdentity> CreateFromPEMStrings(
Ali Tofigh58d861c2022-03-24 23:51:2038 absl::string_view private_key,
39 absl::string_view certificate);
Harald Alvestrand8515d5a2020-03-20 21:51:3240 static std::unique_ptr<SSLIdentity> CreateFromPEMChainStrings(
Ali Tofigh58d861c2022-03-24 23:51:2041 absl::string_view private_key,
42 absl::string_view certificate_chain);
Henrik Kjellanderec78f1c2017-06-29 05:52:5043 ~OpenSSLIdentity() override;
44
Artem Titov6cae2d52022-01-26 15:01:1045 OpenSSLIdentity(const OpenSSLIdentity&) = delete;
46 OpenSSLIdentity& operator=(const OpenSSLIdentity&) = delete;
47
Henrik Kjellanderec78f1c2017-06-29 05:52:5048 const OpenSSLCertificate& certificate() const override;
Taylor Brandstetterc3928662018-02-23 21:04:5149 const SSLCertChain& cert_chain() const override;
Henrik Kjellanderec78f1c2017-06-29 05:52:5050
51 // Configure an SSL context object to use our key and certificate.
52 bool ConfigureIdentity(SSL_CTX* ctx);
53
54 std::string PrivateKeyToPEMString() const override;
55 std::string PublicKeyToPEMString() const override;
56 bool operator==(const OpenSSLIdentity& other) const;
57 bool operator!=(const OpenSSLIdentity& other) const;
58
59 private:
Jian Cui0a8798b2017-11-17 00:58:0260 OpenSSLIdentity(std::unique_ptr<OpenSSLKeyPair> key_pair,
61 std::unique_ptr<OpenSSLCertificate> certificate);
62 OpenSSLIdentity(std::unique_ptr<OpenSSLKeyPair> key_pair,
63 std::unique_ptr<SSLCertChain> cert_chain);
Harald Alvestrand8515d5a2020-03-20 21:51:3264 std::unique_ptr<SSLIdentity> CloneInternal() const override;
Henrik Kjellanderec78f1c2017-06-29 05:52:5065
Harald Alvestrand8515d5a2020-03-20 21:51:3266 static std::unique_ptr<OpenSSLIdentity> CreateInternal(
67 const SSLIdentityParams& params);
Henrik Kjellanderec78f1c2017-06-29 05:52:5068
69 std::unique_ptr<OpenSSLKeyPair> key_pair_;
Jian Cui0a8798b2017-11-17 00:58:0270 std::unique_ptr<SSLCertChain> cert_chain_;
Henrik Kjellanderec78f1c2017-06-29 05:52:5071};
72
Henrik Kjellanderec78f1c2017-06-29 05:52:5073} // namespace rtc
henrike@webrtc.orgf0488722014-05-13 18:00:2674
Steve Anton10542f22019-01-11 17:11:0075#endif // RTC_BASE_OPENSSL_IDENTITY_H_