1f4d63488SMarri Devender Rao #include "config.h" 2f4d63488SMarri Devender Rao 3f4d63488SMarri Devender Rao #include "csr.hpp" 4f4d63488SMarri Devender Rao 5f4d63488SMarri Devender Rao #include <openssl/pem.h> 6f4d63488SMarri Devender Rao 7f4d63488SMarri Devender Rao #include <filesystem> 8f4d63488SMarri Devender Rao #include <phosphor-logging/elog-errors.hpp> 9f4d63488SMarri Devender Rao #include <phosphor-logging/elog.hpp> 10f4d63488SMarri Devender Rao #include <xyz/openbmc_project/Certs/error.hpp> 11f4d63488SMarri Devender Rao #include <xyz/openbmc_project/Common/error.hpp> 12f4d63488SMarri Devender Rao 13e1289adfSNan Zhou namespace phosphor::certs 14f4d63488SMarri Devender Rao { 15f4d63488SMarri Devender Rao using X509_REQ_Ptr = std::unique_ptr<X509_REQ, decltype(&::X509_REQ_free)>; 16f4d63488SMarri Devender Rao using BIO_Ptr = std::unique_ptr<BIO, decltype(&::BIO_free_all)>; 17f4d63488SMarri Devender Rao using InternalFailure = 18f4d63488SMarri Devender Rao sdbusplus::xyz::openbmc_project::Common::Error::InternalFailure; 19f4d63488SMarri Devender Rao using namespace phosphor::logging; 20f4d63488SMarri Devender Rao namespace fs = std::filesystem; 21f4d63488SMarri Devender Rao 22f4d63488SMarri Devender Rao CSR::CSR(sdbusplus::bus::bus& bus, const char* path, 23f4d63488SMarri Devender Rao CertInstallPath&& installPath, const Status& status) : 24f4d63488SMarri Devender Rao CSRIface(bus, path, true), 25f4d63488SMarri Devender Rao bus(bus), objectPath(path), certInstallPath(std::move(installPath)), 26f4d63488SMarri Devender Rao csrStatus(status) 27f4d63488SMarri Devender Rao { 28f4d63488SMarri Devender Rao // Emit deferred signal. 29f4d63488SMarri Devender Rao this->emit_object_added(); 30f4d63488SMarri Devender Rao } 31f4d63488SMarri Devender Rao 32e129be3bSPatrick Williams std::string CSR::csr() 33f4d63488SMarri Devender Rao { 34f4d63488SMarri Devender Rao if (csrStatus == Status::FAILURE) 35f4d63488SMarri Devender Rao { 36f4d63488SMarri Devender Rao log<level::ERR>("Failure in Generating CSR"); 37f4d63488SMarri Devender Rao elog<InternalFailure>(); 38f4d63488SMarri Devender Rao } 39f4d63488SMarri Devender Rao fs::path csrFilePath = certInstallPath; 40*718eef37SNan Zhou csrFilePath = csrFilePath.parent_path() / defaultCSRFileName; 41f4d63488SMarri Devender Rao if (!fs::exists(csrFilePath)) 42f4d63488SMarri Devender Rao { 43f4d63488SMarri Devender Rao log<level::ERR>("CSR file doesn't exists", 44f4d63488SMarri Devender Rao entry("FILENAME=%s", csrFilePath.c_str())); 45f4d63488SMarri Devender Rao elog<InternalFailure>(); 46f4d63488SMarri Devender Rao } 47f4d63488SMarri Devender Rao 48f4d63488SMarri Devender Rao FILE* fp = std::fopen(csrFilePath.c_str(), "r"); 49cfb5802aSNan Zhou X509_REQ_Ptr x509Req(PEM_read_X509_REQ(fp, nullptr, nullptr, nullptr), 50f4d63488SMarri Devender Rao ::X509_REQ_free); 51cfb5802aSNan Zhou if (x509Req == nullptr || fp == nullptr) 52f4d63488SMarri Devender Rao { 53cfb5802aSNan Zhou if (fp != nullptr) 54f4d63488SMarri Devender Rao { 55f4d63488SMarri Devender Rao std::fclose(fp); 56f4d63488SMarri Devender Rao } 57bf3cf751SNan Zhou log<level::ERR>("ERROR occurred while reading CSR file", 58f4d63488SMarri Devender Rao entry("FILENAME=%s", csrFilePath.c_str())); 59f4d63488SMarri Devender Rao elog<InternalFailure>(); 60f4d63488SMarri Devender Rao } 61f4d63488SMarri Devender Rao std::fclose(fp); 62f4d63488SMarri Devender Rao 63f4d63488SMarri Devender Rao BIO_Ptr bio(BIO_new(BIO_s_mem()), ::BIO_free_all); 64f4d63488SMarri Devender Rao int ret = PEM_write_bio_X509_REQ(bio.get(), x509Req.get()); 65f4d63488SMarri Devender Rao if (ret <= 0) 66f4d63488SMarri Devender Rao { 67bf3cf751SNan Zhou log<level::ERR>("Error occurred while calling PEM_write_bio_X509_REQ"); 68f4d63488SMarri Devender Rao elog<InternalFailure>(); 69f4d63488SMarri Devender Rao } 70f4d63488SMarri Devender Rao 71cfb5802aSNan Zhou BUF_MEM* mem = nullptr; 72f4d63488SMarri Devender Rao BIO_get_mem_ptr(bio.get(), &mem); 73f4d63488SMarri Devender Rao std::string pem(mem->data, mem->length); 74f4d63488SMarri Devender Rao return pem; 75f4d63488SMarri Devender Rao } 76f4d63488SMarri Devender Rao 77e1289adfSNan Zhou } // namespace phosphor::certs 78