X-Git-Url: https://code.wpia.club/?a=blobdiff_plain;f=src%2Fapps%2Fclient.cpp;h=e30803e690ba333e6c0f828df4e9675a9a7f89ed;hb=e4a2b7cebcc4b38f1b7181f02c6fcb694fa0af8a;hp=1793de0027177b6a79e84598d88e92b4a24f02fa;hpb=56358cbe81dd0d11267a06133ce227c2c53f10f7;p=cassiopeia.git diff --git a/src/apps/client.cpp b/src/apps/client.cpp index 1793de0..e30803e 100644 --- a/src/apps/client.cpp +++ b/src/apps/client.cpp @@ -27,6 +27,28 @@ extern std::string sqlHost, sqlUser, sqlPass, sqlDB; extern std::string serialPath; extern std::unordered_map> CAs; +void checkCRLs( std::shared_ptr sign ) { + std::cout << "Signing CRLs" << std::endl; + + for( auto x : CAs ) { + std::cout << "Checking: " << x.first << std::endl; + + if( !x.second->crlNeedsResign() ) { + std::cout << "Skipping Resigning CRL: " + x.second->name << std::endl; + continue; + } + + std::cout << "Resigning CRL: " + x.second->name << std::endl; + + try { + std::vector serials; + std::pair, std::string> rev = sign->revoke( x.second, serials ); + } catch( const char* c ) { + std::cout << "Exception: " << c << std::endl; + } + } +} + int main( int argc, const char* argv[] ) { ( void ) argc; ( void ) argv; @@ -56,11 +78,27 @@ int main( int argc, const char* argv[] ) { std::shared_ptr jp( new MySQLJobProvider( sqlHost, sqlUser, sqlPass, sqlDB ) ); std::shared_ptr b = openSerial( serialPath ); std::shared_ptr slip1( BIO_new( toBio() ), BIO_free ); - ( ( SlipBIO* )slip1->ptr )->setTarget( std::shared_ptr( new OpensslBIOWrapper( b ) ) ); + static_cast( slip1->ptr )->setTarget( std::shared_ptr( new OpensslBIOWrapper( b ) ) ); std::shared_ptr sign( new RemoteSigner( slip1, generateSSLContext( false ) ) ); // std::shared_ptr sign( new SimpleOpensslSigner() ); + time_t lastCRLCheck = 0; + while( true ) { + time_t current; + time( ¤t ); + + if( lastCRLCheck + 30 * 60 < current ) { + // todo set good log TODO FIXME + sign->setLog( std::shared_ptr( + &std::cout, + []( std::ostream * o ) { + ( void ) o; + } ) ); + checkCRLs( sign ); + lastCRLCheck = current; + } + std::shared_ptr job = jp->fetchJob(); if( !job ) { @@ -87,6 +125,8 @@ int main( int argc, const char* argv[] ) { if( job->task == "sign" ) { try { std::shared_ptr cert = jp->fetchTBSCert( job ); + cert->wishFrom = job->from; + cert->wishTo = job->to; log << "INFO: message digest: " << cert->md << std::endl; log << "INFO: profile id: " << cert->profile << std::endl; @@ -119,8 +159,14 @@ int main( int argc, const char* argv[] ) { log << "FINE: CERTIFICATE LOG: " << res->log << std::endl; log << "FINE: CERTIFICATE:" << std::endl << res->certificate << std::endl; std::string fn = writeBackFile( job->target.c_str(), res->certificate, keyDir ); + if( fn.empty() ) { + log << "ERROR: Writeback of the certificate failed." << std::endl; + jp->failJob( job ); + continue; + } + res->crt_name = fn; - jp->writeBack( job, res ); + jp->writeBack( job, res ); //! \FIXME: Check return value log << "FINE: signing done." << std::endl; if( DAEMON ) { @@ -130,7 +176,7 @@ int main( int argc, const char* argv[] ) { continue; } catch( const char* c ) { log << "ERROR: " << c << std::endl; - } catch( std::string c ) { + } catch( std::string& c ) { log << "ERROR: " << c << std::endl; } @@ -138,19 +184,20 @@ int main( int argc, const char* argv[] ) { jp->failJob( job ); } catch( const char* c ) { log << "ERROR: " << c << std::endl; - } catch( std::string c ) { + } catch( std::string& c ) { log << "ERROR: " << c << std::endl; } } else if( job->task == "revoke" ) { - std::cout << "Revoking!" << std::endl; - - for( auto& x : CAs ) { - std::cout << " [" << x.first << ']' << std::endl; - } - try { auto data = jp->getRevocationInfo( job ); - sign->revoke( CAs.at( data.second ), data.first ); + std::vector serials; + serials.push_back( data.first ); + std::pair, std::string> rev = sign->revoke( CAs.at( data.second ), serials ); + std::string date = rev.second; + const unsigned char* pos = ( const unsigned char* ) date.data(); + std::shared_ptr time( d2i_ASN1_TIME( NULL, &pos, date.size() ), ASN1_TIME_free ); + + jp->writeBackRevocation( job, timeToString( time ) ); jp->finishJob( job ); } catch( const char* c ) { std::cout << "Exception: " << c << std::endl;