x509_csr_validate.c
Go to the documentation of this file.
1 /**
2  * @file x509_csr_validate.c
3  * @brief CSR validation
4  *
5  * @section License
6  *
7  * SPDX-License-Identifier: GPL-2.0-or-later
8  *
9  * Copyright (C) 2010-2024 Oryx Embedded SARL. All rights reserved.
10  *
11  * This file is part of CycloneCRYPTO Open.
12  *
13  * This program is free software; you can redistribute it and/or
14  * modify it under the terms of the GNU General Public License
15  * as published by the Free Software Foundation; either version 2
16  * of the License, or (at your option) any later version.
17  *
18  * This program is distributed in the hope that it will be useful,
19  * but WITHOUT ANY WARRANTY; without even the implied warranty of
20  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
21  * GNU General Public License for more details.
22  *
23  * You should have received a copy of the GNU General Public License
24  * along with this program; if not, write to the Free Software Foundation,
25  * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
26  *
27  * @author Oryx Embedded SARL (www.oryx-embedded.com)
28  * @version 2.4.0
29  **/
30 
31 //Switch to the appropriate trace level
32 #define TRACE_LEVEL CRYPTO_TRACE_LEVEL
33 
34 //Dependencies
35 #include "core/crypto.h"
36 #include "pkix/x509_csr_validate.h"
37 #include "pkix/x509_sign_verify.h"
38 #include "debug.h"
39 
40 //Check crypto library configuration
41 #if (X509_SUPPORT == ENABLED)
42 
43 
44 /**
45  * @brief CSR validation
46  * @param[in] csrInfo Pointer to the CSR to be verified
47  * @return Error code
48  **/
49 
51 {
52  error_t error;
53 
54  //Check parameters
55  if(csrInfo == NULL)
57 
58  //The ASN.1 DER-encoded certificationRequestInfo is used as the input
59  //to the signature function
60  error = x509VerifySignature(&csrInfo->certReqInfo.raw, &csrInfo->signatureAlgo,
61  &csrInfo->certReqInfo.subjectPublicKeyInfo, &csrInfo->signatureValue);
62 
63  //Return status code
64  return error;
65 }
66 
67 #endif
General definitions for cryptographic algorithms.
Debugging facilities.
error_t
Error codes.
Definition: error.h:43
@ ERROR_INVALID_PARAMETER
Invalid parameter.
Definition: error.h:47
X509OctetString raw
Definition: x509_common.h:1253
X509SubjectPublicKeyInfo subjectPublicKeyInfo
Definition: x509_common.h:1256
CSR (Certificate Signing Request)
Definition: x509_common.h:1266
X509CertRequestInfo certReqInfo
Definition: x509_common.h:1267
X509OctetString signatureValue
Definition: x509_common.h:1269
X509SignAlgoId signatureAlgo
Definition: x509_common.h:1268
error_t x509ValidateCsr(const X509CsrInfo *csrInfo)
CSR validation.
CSR validation.
error_t x509VerifySignature(const X509OctetString *tbsData, const X509SignAlgoId *signAlgoId, const X509SubjectPublicKeyInfo *publicKeyInfo, const X509OctetString *signature)
Certificate signature verification.
RSA/DSA/ECDSA/EdDSA signature verification.