1 /*
2 * Convert PEM to DER
3 *
4 * Copyright The Mbed TLS Contributors
5 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
6 *
7 * This file is provided under the Apache License 2.0, or the
8 * GNU General Public License v2.0 or later.
9 *
10 * **********
11 * Apache License 2.0:
12 *
13 * Licensed under the Apache License, Version 2.0 (the "License"); you may
14 * not use this file except in compliance with the License.
15 * You may obtain a copy of the License at
16 *
17 * http://www.apache.org/licenses/LICENSE-2.0
18 *
19 * Unless required by applicable law or agreed to in writing, software
20 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
21 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
22 * See the License for the specific language governing permissions and
23 * limitations under the License.
24 *
25 * **********
26 *
27 * **********
28 * GNU General Public License v2.0 or later:
29 *
30 * This program is free software; you can redistribute it and/or modify
31 * it under the terms of the GNU General Public License as published by
32 * the Free Software Foundation; either version 2 of the License, or
33 * (at your option) any later version.
34 *
35 * This program is distributed in the hope that it will be useful,
36 * but WITHOUT ANY WARRANTY; without even the implied warranty of
37 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
38 * GNU General Public License for more details.
39 *
40 * You should have received a copy of the GNU General Public License along
41 * with this program; if not, write to the Free Software Foundation, Inc.,
42 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
43 *
44 * **********
45 */
46
47 #if !defined(MBEDTLS_CONFIG_FILE)
48 #include "mbedtls/config.h"
49 #else
50 #include MBEDTLS_CONFIG_FILE
51 #endif
52
53 #if defined(MBEDTLS_PLATFORM_C)
54 #include "mbedtls/platform.h"
55 #else
56 #include <stdio.h>
57 #include <stdlib.h>
58 #define mbedtls_free free
59 #define mbedtls_calloc calloc
60 #define mbedtls_printf printf
61 #define mbedtls_exit exit
62 #define MBEDTLS_EXIT_SUCCESS EXIT_SUCCESS
63 #define MBEDTLS_EXIT_FAILURE EXIT_FAILURE
64 #endif /* MBEDTLS_PLATFORM_C */
65
66 #if defined(MBEDTLS_BASE64_C) && defined(MBEDTLS_FS_IO)
67 #include "mbedtls/error.h"
68 #include "mbedtls/base64.h"
69
70 #include <stdio.h>
71 #include <stdlib.h>
72 #include <string.h>
73 #endif
74
75 #define DFL_FILENAME "file.pem"
76 #define DFL_OUTPUT_FILENAME "file.der"
77
78 #define USAGE \
79 "\n usage: pem2der param=<>...\n" \
80 "\n acceptable parameters:\n" \
81 " filename=%%s default: file.pem\n" \
82 " output_file=%%s default: file.der\n" \
83 "\n"
84
85 #if !defined(MBEDTLS_BASE64_C) || !defined(MBEDTLS_FS_IO)
main(void)86 int main( void )
87 {
88 mbedtls_printf("MBEDTLS_BASE64_C and/or MBEDTLS_FS_IO not defined.\n");
89 mbedtls_exit( 0 );
90 }
91 #else
92
93
94 /*
95 * global options
96 */
97 struct options
98 {
99 const char *filename; /* filename of the input file */
100 const char *output_file; /* where to store the output */
101 } opt;
102
convert_pem_to_der(const unsigned char * input,size_t ilen,unsigned char * output,size_t * olen)103 int convert_pem_to_der( const unsigned char *input, size_t ilen,
104 unsigned char *output, size_t *olen )
105 {
106 int ret;
107 const unsigned char *s1, *s2, *end = input + ilen;
108 size_t len = 0;
109
110 s1 = (unsigned char *) strstr( (const char *) input, "-----BEGIN" );
111 if( s1 == NULL )
112 return( -1 );
113
114 s2 = (unsigned char *) strstr( (const char *) input, "-----END" );
115 if( s2 == NULL )
116 return( -1 );
117
118 s1 += 10;
119 while( s1 < end && *s1 != '-' )
120 s1++;
121 while( s1 < end && *s1 == '-' )
122 s1++;
123 if( *s1 == '\r' ) s1++;
124 if( *s1 == '\n' ) s1++;
125
126 if( s2 <= s1 || s2 > end )
127 return( -1 );
128
129 ret = mbedtls_base64_decode( NULL, 0, &len, (const unsigned char *) s1, s2 - s1 );
130 if( ret == MBEDTLS_ERR_BASE64_INVALID_CHARACTER )
131 return( ret );
132
133 if( len > *olen )
134 return( -1 );
135
136 if( ( ret = mbedtls_base64_decode( output, len, &len, (const unsigned char *) s1,
137 s2 - s1 ) ) != 0 )
138 {
139 return( ret );
140 }
141
142 *olen = len;
143
144 return( 0 );
145 }
146
147 /*
148 * Load all data from a file into a given buffer.
149 */
load_file(const char * path,unsigned char ** buf,size_t * n)150 static int load_file( const char *path, unsigned char **buf, size_t *n )
151 {
152 FILE *f;
153 long size;
154
155 if( ( f = fopen( path, "rb" ) ) == NULL )
156 return( -1 );
157
158 fseek( f, 0, SEEK_END );
159 if( ( size = ftell( f ) ) == -1 )
160 {
161 fclose( f );
162 return( -1 );
163 }
164 fseek( f, 0, SEEK_SET );
165
166 *n = (size_t) size;
167
168 if( *n + 1 == 0 ||
169 ( *buf = mbedtls_calloc( 1, *n + 1 ) ) == NULL )
170 {
171 fclose( f );
172 return( -1 );
173 }
174
175 if( fread( *buf, 1, *n, f ) != *n )
176 {
177 fclose( f );
178 free( *buf );
179 *buf = NULL;
180 return( -1 );
181 }
182
183 fclose( f );
184
185 (*buf)[*n] = '\0';
186
187 return( 0 );
188 }
189
190 /*
191 * Write buffer to a file
192 */
write_file(const char * path,unsigned char * buf,size_t n)193 static int write_file( const char *path, unsigned char *buf, size_t n )
194 {
195 FILE *f;
196
197 if( ( f = fopen( path, "wb" ) ) == NULL )
198 return( -1 );
199
200 if( fwrite( buf, 1, n, f ) != n )
201 {
202 fclose( f );
203 return( -1 );
204 }
205
206 fclose( f );
207 return( 0 );
208 }
209
main(int argc,char * argv[])210 int main( int argc, char *argv[] )
211 {
212 int ret = 1;
213 int exit_code = MBEDTLS_EXIT_FAILURE;
214 unsigned char *pem_buffer = NULL;
215 unsigned char der_buffer[4096];
216 char buf[1024];
217 size_t pem_size, der_size = sizeof(der_buffer);
218 int i;
219 char *p, *q;
220
221 /*
222 * Set to sane values
223 */
224 memset( buf, 0, sizeof(buf) );
225 memset( der_buffer, 0, sizeof(der_buffer) );
226
227 if( argc == 0 )
228 {
229 usage:
230 mbedtls_printf( USAGE );
231 goto exit;
232 }
233
234 opt.filename = DFL_FILENAME;
235 opt.output_file = DFL_OUTPUT_FILENAME;
236
237 for( i = 1; i < argc; i++ )
238 {
239
240 p = argv[i];
241 if( ( q = strchr( p, '=' ) ) == NULL )
242 goto usage;
243 *q++ = '\0';
244
245 if( strcmp( p, "filename" ) == 0 )
246 opt.filename = q;
247 else if( strcmp( p, "output_file" ) == 0 )
248 opt.output_file = q;
249 else
250 goto usage;
251 }
252
253 /*
254 * 1.1. Load the PEM file
255 */
256 mbedtls_printf( "\n . Loading the PEM file ..." );
257 fflush( stdout );
258
259 ret = load_file( opt.filename, &pem_buffer, &pem_size );
260
261 if( ret != 0 )
262 {
263 #ifdef MBEDTLS_ERROR_C
264 mbedtls_strerror( ret, buf, 1024 );
265 #endif
266 mbedtls_printf( " failed\n ! load_file returned %d - %s\n\n", ret, buf );
267 goto exit;
268 }
269
270 mbedtls_printf( " ok\n" );
271
272 /*
273 * 1.2. Convert from PEM to DER
274 */
275 mbedtls_printf( " . Converting from PEM to DER ..." );
276 fflush( stdout );
277
278 if( ( ret = convert_pem_to_der( pem_buffer, pem_size, der_buffer, &der_size ) ) != 0 )
279 {
280 #ifdef MBEDTLS_ERROR_C
281 mbedtls_strerror( ret, buf, 1024 );
282 #endif
283 mbedtls_printf( " failed\n ! convert_pem_to_der %d - %s\n\n", ret, buf );
284 goto exit;
285 }
286
287 mbedtls_printf( " ok\n" );
288
289 /*
290 * 1.3. Write the DER file
291 */
292 mbedtls_printf( " . Writing the DER file ..." );
293 fflush( stdout );
294
295 ret = write_file( opt.output_file, der_buffer, der_size );
296
297 if( ret != 0 )
298 {
299 #ifdef MBEDTLS_ERROR_C
300 mbedtls_strerror( ret, buf, 1024 );
301 #endif
302 mbedtls_printf( " failed\n ! write_file returned %d - %s\n\n", ret, buf );
303 goto exit;
304 }
305
306 mbedtls_printf( " ok\n" );
307
308 exit_code = MBEDTLS_EXIT_SUCCESS;
309
310 exit:
311 free( pem_buffer );
312
313 #if defined(_WIN32)
314 mbedtls_printf( " + Press Enter to exit this program.\n" );
315 fflush( stdout ); getchar();
316 #endif
317
318 mbedtls_exit( exit_code );
319 }
320 #endif /* MBEDTLS_BASE64_C && MBEDTLS_FS_IO */
321