1 package org.cacert.gigi.pages.account;
3 import java.io.IOException;
4 import java.io.PrintWriter;
5 import java.security.GeneralSecurityException;
6 import java.security.cert.X509Certificate;
7 import java.sql.PreparedStatement;
8 import java.sql.ResultSet;
9 import java.sql.SQLException;
10 import java.util.Base64;
11 import java.util.HashMap;
13 import javax.servlet.ServletOutputStream;
14 import javax.servlet.http.HttpServletRequest;
15 import javax.servlet.http.HttpServletResponse;
17 import org.cacert.gigi.Certificate;
18 import org.cacert.gigi.User;
19 import org.cacert.gigi.database.DatabaseConnection;
20 import org.cacert.gigi.output.CertificateTable;
21 import org.cacert.gigi.pages.LoginPage;
22 import org.cacert.gigi.pages.Page;
24 public class MailCertificates extends Page {
25 CertificateTable myTable = new CertificateTable("mailcerts");
26 public static final String PATH = "/account/certs/email";
28 public MailCertificates() {
29 super("Email Certificates");
33 public boolean beforeTemplate(HttpServletRequest req, HttpServletResponse resp) throws IOException {
35 String pi = req.getPathInfo().substring(PATH.length());
36 if (pi.length() == 0) {
42 resp.setContentType("application/pkix-cert");
43 if (pi.endsWith(".crt")) {
45 pi = pi.substring(0, pi.length() - 4);
46 } else if (pi.endsWith(".cer")) {
47 if (req.getParameter("install") != null) {
48 resp.setContentType("application/x-x509-user-cert");
51 pi = pi.substring(0, pi.length() - 4);
52 } else if (pi.endsWith(".cer")) {
54 pi = pi.substring(0, pi.length() - 4);
58 Certificate c = Certificate.getBySerial(serial);
59 if (c == null || LoginPage.getUser(req).getId() != c.getOwnerId()) {
63 X509Certificate cert = c.cert();
67 ServletOutputStream out = resp.getOutputStream();
69 out.println("-----BEGIN CERTIFICATE-----");
70 String block = Base64.getEncoder().encodeToString(cert.getEncoded()).replaceAll("(.{64})(?=.)", "$1\n");
72 out.println("-----END CERTIFICATE-----");
74 out.write(cert.getEncoded());
76 } catch (IllegalArgumentException e) {
79 } catch (GeneralSecurityException e) {
82 } catch (SQLException e) {
91 public void doGet(HttpServletRequest req, HttpServletResponse resp) throws IOException {
92 PrintWriter out = resp.getWriter();
93 String pi = req.getPathInfo().substring(PATH.length());
94 if (pi.length() != 0) {
98 Certificate c = Certificate.getBySerial(serial);
99 if (c == null || LoginPage.getUser(req).getId() != c.getOwnerId()) {
103 out.print("<a href='");
106 out.print(translate(req, "PEM encoded Certificate"));
107 out.println("</a><br/>");
109 out.print("<a href='");
112 out.print(translate(req, "DER encoded Certificate"));
113 out.println("</a><br/>");
114 out.print("<a href='");
116 out.print(".cer?install'>");
117 out.print(translate(req, "Install into browser."));
118 out.println("</a><br/>");
120 out.println("<pre>");
122 X509Certificate cert = c.cert();
124 } catch (GeneralSecurityException e) {
126 } catch (SQLException e) {
129 out.println("</pre>");
133 HashMap<String, Object> vars = new HashMap<String, Object>();
134 User us = LoginPage.getUser(req);
136 PreparedStatement ps = DatabaseConnection.getInstance().prepare(
137 "SELECT `id`, `CN`, `serial`, `revoked`, `expire`, `disablelogin` FROM `emailcerts` WHERE `memid`=?");
138 ps.setInt(1, us.getId());
139 ResultSet rs = ps.executeQuery();
140 vars.put("mailcerts", rs);
141 myTable.output(out, getLanguage(req), vars);
143 } catch (SQLException e) {