1 package org.cacert.gigi.pages.account;
3 import java.io.IOException;
4 import java.io.PrintWriter;
5 import java.net.URLEncoder;
6 import java.security.GeneralSecurityException;
7 import java.security.cert.X509Certificate;
8 import java.sql.PreparedStatement;
9 import java.sql.ResultSet;
10 import java.sql.SQLException;
11 import java.util.HashMap;
13 import javax.servlet.ServletOutputStream;
14 import javax.servlet.http.HttpServletRequest;
15 import javax.servlet.http.HttpServletResponse;
17 import org.cacert.gigi.Certificate;
18 import org.cacert.gigi.User;
19 import org.cacert.gigi.database.DatabaseConnection;
20 import org.cacert.gigi.output.CertificateTable;
21 import org.cacert.gigi.output.template.Template;
22 import org.cacert.gigi.pages.LoginPage;
23 import org.cacert.gigi.pages.Page;
24 import org.cacert.gigi.util.PEM;
26 public class MailCertificates extends Page {
28 CertificateTable myTable = new CertificateTable("mailcerts");
30 Template certDisplay = new Template(MailCertificates.class.getResource("CertificateDisplay.templ"));
32 public static final String PATH = "/account/certs/email";
34 public MailCertificates() {
35 super("Email Certificates");
39 public boolean beforeTemplate(HttpServletRequest req, HttpServletResponse resp) throws IOException {
41 String pi = req.getPathInfo().substring(PATH.length());
42 if (pi.length() == 0) {
48 resp.setContentType("application/pkix-cert");
49 if (pi.endsWith(".crt")) {
51 pi = pi.substring(0, pi.length() - 4);
52 } else if (pi.endsWith(".cer")) {
53 if (req.getParameter("install") != null) {
54 resp.setContentType("application/x-x509-user-cert");
57 pi = pi.substring(0, pi.length() - 4);
58 } else if (pi.endsWith(".cer")) {
60 pi = pi.substring(0, pi.length() - 4);
64 Certificate c = Certificate.getBySerial(serial);
65 if (c == null || getUser(req).getId() != c.getOwnerId()) {
69 X509Certificate cert = c.cert();
73 ServletOutputStream out = resp.getOutputStream();
75 out.println(PEM.encode("CERTIFICATE", cert.getEncoded()));
77 out.write(cert.getEncoded());
79 } catch (IllegalArgumentException e) {
82 } catch (GeneralSecurityException e) {
85 } catch (SQLException e) {
94 public void doGet(HttpServletRequest req, HttpServletResponse resp) throws IOException {
95 PrintWriter out = resp.getWriter();
96 String pi = req.getPathInfo().substring(PATH.length());
97 if (pi.length() != 0) {
101 Certificate c = Certificate.getBySerial(serial);
102 if (c == null || LoginPage.getUser(req).getId() != c.getOwnerId()) {
106 HashMap<String, Object> vars = new HashMap<>();
107 vars.put("serial", URLEncoder.encode(serial, "UTF-8"));
109 vars.put("cert", c.cert());
110 } catch (GeneralSecurityException e) {
112 } catch (SQLException e) {
115 certDisplay.output(out, getLanguage(req), vars);
120 HashMap<String, Object> vars = new HashMap<String, Object>();
121 User us = LoginPage.getUser(req);
123 PreparedStatement ps = DatabaseConnection.getInstance().prepare("SELECT `id`, `CN`, `serial`, `revoked`, `expire`, `disablelogin` FROM `emailcerts` WHERE `memid`=?");
124 ps.setInt(1, us.getId());
125 ResultSet rs = ps.executeQuery();
126 vars.put("mailcerts", rs);
127 myTable.output(out, getLanguage(req), vars);
129 } catch (SQLException e) {