1 package org.cacert.gigi.pages.account;
3 import java.io.IOException;
4 import java.io.PrintWriter;
5 import java.security.GeneralSecurityException;
6 import java.security.cert.X509Certificate;
7 import java.sql.PreparedStatement;
8 import java.sql.ResultSet;
9 import java.sql.SQLException;
10 import java.util.Base64;
11 import java.util.HashMap;
13 import javax.servlet.ServletOutputStream;
14 import javax.servlet.http.HttpServletRequest;
15 import javax.servlet.http.HttpServletResponse;
17 import org.cacert.gigi.Certificate;
18 import org.cacert.gigi.User;
19 import org.cacert.gigi.database.DatabaseConnection;
20 import org.cacert.gigi.output.CertificateTable;
21 import org.cacert.gigi.pages.LoginPage;
22 import org.cacert.gigi.pages.Page;
24 public class MailCertificates extends Page {
26 CertificateTable myTable = new CertificateTable("mailcerts");
28 public static final String PATH = "/account/certs/email";
30 public MailCertificates() {
31 super("Email Certificates");
35 public boolean beforeTemplate(HttpServletRequest req, HttpServletResponse resp) throws IOException {
37 String pi = req.getPathInfo().substring(PATH.length());
38 if (pi.length() == 0) {
44 resp.setContentType("application/pkix-cert");
45 if (pi.endsWith(".crt")) {
47 pi = pi.substring(0, pi.length() - 4);
48 } else if (pi.endsWith(".cer")) {
49 if (req.getParameter("install") != null) {
50 resp.setContentType("application/x-x509-user-cert");
53 pi = pi.substring(0, pi.length() - 4);
54 } else if (pi.endsWith(".cer")) {
56 pi = pi.substring(0, pi.length() - 4);
60 Certificate c = Certificate.getBySerial(serial);
61 if (c == null || LoginPage.getUser(req).getId() != c.getOwnerId()) {
65 X509Certificate cert = c.cert();
69 ServletOutputStream out = resp.getOutputStream();
71 out.println("-----BEGIN CERTIFICATE-----");
72 String block = Base64.getEncoder().encodeToString(cert.getEncoded()).replaceAll("(.{64})(?=.)", "$1\n");
74 out.println("-----END CERTIFICATE-----");
76 out.write(cert.getEncoded());
78 } catch (IllegalArgumentException e) {
81 } catch (GeneralSecurityException e) {
84 } catch (SQLException e) {
93 public void doGet(HttpServletRequest req, HttpServletResponse resp) throws IOException {
94 PrintWriter out = resp.getWriter();
95 String pi = req.getPathInfo().substring(PATH.length());
96 if (pi.length() != 0) {
100 Certificate c = Certificate.getBySerial(serial);
101 if (c == null || LoginPage.getUser(req).getId() != c.getOwnerId()) {
105 out.print("<a href='");
108 out.print(translate(req, "PEM encoded Certificate"));
109 out.println("</a><br/>");
111 out.print("<a href='");
114 out.print(translate(req, "DER encoded Certificate"));
115 out.println("</a><br/>");
116 out.print("<a href='");
118 out.print(".cer?install'>");
119 out.print(translate(req, "Install into browser."));
120 out.println("</a><br/>");
122 out.println("<pre>");
124 X509Certificate cert = c.cert();
126 } catch (GeneralSecurityException e) {
128 } catch (SQLException e) {
131 out.println("</pre>");
135 HashMap<String, Object> vars = new HashMap<String, Object>();
136 User us = LoginPage.getUser(req);
138 PreparedStatement ps = DatabaseConnection.getInstance().prepare("SELECT `id`, `CN`, `serial`, `revoked`, `expire`, `disablelogin` FROM `emailcerts` WHERE `memid`=?");
139 ps.setInt(1, us.getId());
140 ResultSet rs = ps.executeQuery();
141 vars.put("mailcerts", rs);
142 myTable.output(out, getLanguage(req), vars);
144 } catch (SQLException e) {