370919 | 2002-03-20 | Martin Nilsson | | #pike __REAL_VERSION__
|
576edc | 2014-02-14 | Martin Nilsson | | #require constant(SSL.Cipher)
|
33ef43 | 1997-03-13 | Niels Möller | |
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | |
|
f5bb03 | 2001-09-17 | Martin Nilsson | |
|
bf3f97 | 2013-12-06 | Henrik Grubbström (Grubba) | | #ifndef PORT
|
33ef43 | 1997-03-13 | Niels Möller | | #define PORT 25678
|
bf3f97 | 2013-12-06 | Henrik Grubbström (Grubba) | | #endif
|
33ef43 | 1997-03-13 | Niels Möller | |
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | #ifndef CIPHER_BITS
|
df6710 | 2014-04-15 | Henrik Grubbström (Grubba) | | #define CIPHER_BITS 112
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | #endif
#ifndef RSA_BITS
#define RSA_BITS 4096
#endif
#ifndef DSA_BITS
#define DSA_BITS 2048
#endif
#ifndef KE_MODE
#define KE_MODE 1
#endif
#ifndef HOST
#define HOST "127.0.0.1"
#endif
|
b06b5d | 2013-08-01 | Martin Nilsson | | #ifdef SSL3_DEBUG
#define SSL3_DEBUG_MSG(X ...) werror(X)
#else /*! SSL3_DEBUG */
#define SSL3_DEBUG_MSG(X ...)
#endif /* SSL3_DEBUG */
|
794895 | 2014-04-12 | Henrik Grubbström (Grubba) | | class MyContext
{
inherit SSL.context;
SSL.alert alert_factory(SSL.connection con,
int level, int description,
SSL.Constants.ProtocolVersion version,
|
0ddaf8 | 2014-04-24 | Martin Nilsson | | string|void message)
|
794895 | 2014-04-12 | Henrik Grubbström (Grubba) | | {
if (message) {
werror("ALERT [%s: %d:%d]: %s",
SSL.Constants.fmt_version(version),
level, description, message);
}
|
0ddaf8 | 2014-04-24 | Martin Nilsson | | return ::alert_factory(con, level, description, version, message);
|
794895 | 2014-04-12 | Henrik Grubbström (Grubba) | | }
}
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | #ifndef HTTPS_CLIENT
|
b807c0 | 2014-04-12 | Henrik Grubbström (Grubba) | | SSL.sslport port;
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | |
void my_accept_callback(object f)
{
|
54caaf | 2014-04-24 | Martin Nilsson | | Conn(port->accept());
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | }
#endif
|
54caaf | 2014-04-24 | Martin Nilsson | | class Conn {
|
33ef43 | 1997-03-13 | Niels Möller | |
object sslfile;
|
da4f8b | 2013-11-27 | Henrik Grubbström (Grubba) | | string message =
"HTTP/1.0 200 Ok\r\n"
"Connection: close\r\n"
"Content-Length: 132\r\n"
"Content-Type: text/html; charset=ISO-8859-1\r\n"
"Date: Thu, 01 Jan 1970 00:00:01 GMT\r\n"
"Server: Bare-Bones\r\n"
"\r\n"
"<html><head><title>SSL-3 server</title></head>\n"
"<body><h1>This is a minimal SSL-3 http server</h1>\n"
"<hr><it>/nisse</it></body></html>\n";
|
33ef43 | 1997-03-13 | Niels Möller | | int index = 0;
|
5f22e3 | 1997-03-17 | Niels Möller | | void write_callback()
|
33ef43 | 1997-03-13 | Niels Möller | | {
|
ead972 | 2003-01-20 | Martin Nilsson | | if (index < sizeof(message))
|
33ef43 | 1997-03-13 | Niels Möller | | {
int written = sslfile->write(message[index..]);
if (written > 0)
index += written;
else
sslfile->close();
}
|
ead972 | 2003-01-20 | Martin Nilsson | | if (index == sizeof(message))
|
33ef43 | 1997-03-13 | Niels Möller | | sslfile->close();
}
void read_callback(mixed id, string data)
{
|
b06b5d | 2013-08-01 | Martin Nilsson | | SSL3_DEBUG_MSG("Received: '" + data + "'\n");
|
5f22e3 | 1997-03-17 | Niels Möller | | sslfile->set_write_callback(write_callback);
|
33ef43 | 1997-03-13 | Niels Möller | | }
|
b55e17 | 2010-12-26 | Henrik Grubbström (Grubba) | | protected void create(object f)
|
33ef43 | 1997-03-13 | Niels Möller | | {
sslfile = f;
|
5f22e3 | 1997-03-17 | Niels Möller | | sslfile->set_nonblocking(read_callback, 0, 0);
|
33ef43 | 1997-03-13 | Niels Möller | | }
}
|
54caaf | 2014-04-24 | Martin Nilsson | | class Client
|
33ef43 | 1997-03-13 | Niels Möller | | {
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | constant request =
"HEAD / HTTP/1.0\r\n"
"Host: localhost:" + PORT + "\r\n"
"\r\n";
SSL.sslfile ssl;
int sent;
|
54caaf | 2014-04-24 | Martin Nilsson | |
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | void write_cb()
{
int bytes = ssl->write(request[sent..]);
if (bytes > 0) {
sent += bytes;
} else if (sent < 0) {
|
54caaf | 2014-04-24 | Martin Nilsson | | exit(17, "Failed to write data: %s\n", strerror(ssl->errno()));
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | }
if (sent == sizeof(request)) {
ssl->set_write_callback(UNDEFINED);
}
}
|
54caaf | 2014-04-24 | Martin Nilsson | |
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | void got_data(mixed ignored, string data)
{
werror("Data: %O\n", data);
}
|
54caaf | 2014-04-24 | Martin Nilsson | |
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | void con_closed()
{
|
54caaf | 2014-04-24 | Martin Nilsson | | exit(0, "Connection closed.\n");
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | }
protected void create(Stdio.File con)
{
|
794895 | 2014-04-12 | Henrik Grubbström (Grubba) | | SSL.context ctx = MyContext();
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | |
|
915d77 | 2014-03-25 | Henrik Grubbström (Grubba) | | ctx->preferred_suites = ctx->get_suites(-1, 2);
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | werror("Starting\n");
ssl = SSL.sslfile(con, ctx, 1);
ssl->set_nonblocking(got_data, write_cb, con_closed);
}
|
33ef43 | 1997-03-13 | Niels Möller | | }
int main()
{
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | #ifdef HTTPS_CLIENT
Stdio.File con = Stdio.File();
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | if (!con->connect(HOST, PORT)) {
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | werror("Failed to connect to server: %s\n", strerror(con->errno()));
return 17;
}
|
54caaf | 2014-04-24 | Martin Nilsson | | Client(con);
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | return -17;
|
118e8b | 2014-01-14 | Henrik Grubbström (Grubba) | | #else
|
794895 | 2014-04-12 | Henrik Grubbström (Grubba) | | SSL.context ctx = MyContext();
|
b807c0 | 2014-04-12 | Henrik Grubbström (Grubba) | |
|
557b46 | 2014-03-08 | Henrik Grubbström (Grubba) | | Crypto.Sign key;
|
935b34 | 2014-04-01 | Martin Nilsson | | string certificate;
|
557b46 | 2014-03-08 | Henrik Grubbström (Grubba) | |
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | string common_name = gethostname();
common_name = (gethostbyname(common_name) || ({ common_name }))[0];
werror("Common name: %O\n", common_name);
werror("Generating RSA certificate (%d bits)...\n", RSA_BITS);
key = Crypto.RSA()->generate_key(RSA_BITS);
|
935b34 | 2014-04-01 | Martin Nilsson | | certificate =
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | "commonName" : common_name,
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | ]));
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | ctx->add_cert(key, ({ certificate }), ({ "*" }));
|
935b34 | 2014-04-01 | Martin Nilsson | |
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | |
certificate =
Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
"commonName" : common_name,
]), UNDEFINED,
Crypto.SHA1);
|
b807c0 | 2014-04-12 | Henrik Grubbström (Grubba) | | ctx->add_cert(key, ({ certificate }), ({ "*" }));
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | |
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | werror("Generating DSA certificate (%d bits)...\n", DSA_BITS);
catch {
key = Crypto.DSA()->generate_key(DSA_BITS, 256);
certificate =
Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
"commonName" : common_name,
]), UNDEFINED,
Crypto.SHA256);
ctx->add_cert(key, ({ certificate, ({ "*" }) }));
};
|
e3bc62 | 2014-04-02 | Martin Nilsson | | key = Crypto.DSA()->generate_key(1024, 160);
|
935b34 | 2014-04-01 | Martin Nilsson | | certificate =
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | "commonName" : common_name,
]), UNDEFINED,
Crypto.SHA1);
ctx->add_cert(key, ({ certificate }), ({ "*" }));
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | |
#if constant(Crypto.ECC.Curve)
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | werror("Generating ECDSA certificate (%d bits)...\n", 521);
|
0f12b1 | 2014-04-02 | Martin Nilsson | | key = Crypto.ECC.SECP_521R1.ECDSA()->generate_key();
|
935b34 | 2014-04-01 | Martin Nilsson | | certificate =
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | "commonName" : common_name,
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | ]));
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | ctx->add_cert(key, ({ certificate }), ({ "*" }));
certificate =
Standards.X509.make_selfsigned_certificate(key, 3600*4, ([
"organizationName" : "Test",
"commonName" : common_name,
]), UNDEFINED,
Crypto.SHA1);
ctx->add_cert(key, ({ certificate }), ({ "*" }));
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | | #endif
|
915d77 | 2014-03-25 | Henrik Grubbström (Grubba) | |
|
d35d32 | 2014-04-15 | Henrik Grubbström (Grubba) | | ctx->preferred_suites = ctx->get_suites(CIPHER_BITS, KE_MODE);
|
bd7c0f | 2014-04-01 | Martin Nilsson | | SSL3_DEBUG_MSG("Cipher suites:\n%s",
|
b807c0 | 2014-04-12 | Henrik Grubbström (Grubba) | | .Constants.fmt_cipher_suites(ctx->preferred_suites));
SSL3_DEBUG_MSG("Certs:\n%O\n", ctx->cert_pairs);
port = SSL.sslport(ctx);
|
9c3942 | 2014-03-25 | Henrik Grubbström (Grubba) | |
|
33ef43 | 1997-03-13 | Niels Möller | | werror("Starting\n");
|
b807c0 | 2014-04-12 | Henrik Grubbström (Grubba) | | if (!port->bind(PORT, my_accept_callback))
|
cfc83a | 1997-03-15 | Niels Möller | | {
|
54caaf | 2014-04-24 | Martin Nilsson | | Stdio.perror("");
|
cfc83a | 1997-03-15 | Niels Möller | | return 17;
}
|
4652a2 | 2013-11-24 | Henrik Grubbström (Grubba) | | else {
werror("Listening on port %d.\n", PORT);
|
cfc83a | 1997-03-15 | Niels Möller | | return -17;
|
4652a2 | 2013-11-24 | Henrik Grubbström (Grubba) | | }
|
d0efae | 2013-10-26 | Henrik Grubbström (Grubba) | | #endif
|
6ecec9 | 1997-03-15 | Niels Möller | | }
|