• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  *  Convert PEM to DER
3  *
4  *  Copyright The Mbed TLS Contributors
5  *  SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
6  *
7  *  This file is provided under the Apache License 2.0, or the
8  *  GNU General Public License v2.0 or later.
9  *
10  *  **********
11  *  Apache License 2.0:
12  *
13  *  Licensed under the Apache License, Version 2.0 (the "License"); you may
14  *  not use this file except in compliance with the License.
15  *  You may obtain a copy of the License at
16  *
17  *  http://www.apache.org/licenses/LICENSE-2.0
18  *
19  *  Unless required by applicable law or agreed to in writing, software
20  *  distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
21  *  WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
22  *  See the License for the specific language governing permissions and
23  *  limitations under the License.
24  *
25  *  **********
26  *
27  *  **********
28  *  GNU General Public License v2.0 or later:
29  *
30  *  This program is free software; you can redistribute it and/or modify
31  *  it under the terms of the GNU General Public License as published by
32  *  the Free Software Foundation; either version 2 of the License, or
33  *  (at your option) any later version.
34  *
35  *  This program is distributed in the hope that it will be useful,
36  *  but WITHOUT ANY WARRANTY; without even the implied warranty of
37  *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
38  *  GNU General Public License for more details.
39  *
40  *  You should have received a copy of the GNU General Public License along
41  *  with this program; if not, write to the Free Software Foundation, Inc.,
42  *  51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
43  *
44  *  **********
45  */
46 
47 #if !defined(MBEDTLS_CONFIG_FILE)
48 #include "mbedtls/config.h"
49 #else
50 #include MBEDTLS_CONFIG_FILE
51 #endif
52 
53 #if defined(MBEDTLS_PLATFORM_C)
54 #include "mbedtls/platform.h"
55 #else
56 #include <stdio.h>
57 #include <stdlib.h>
58 #define mbedtls_free            free
59 #define mbedtls_calloc          calloc
60 #define mbedtls_printf          printf
61 #define mbedtls_exit            exit
62 #define MBEDTLS_EXIT_SUCCESS    EXIT_SUCCESS
63 #define MBEDTLS_EXIT_FAILURE    EXIT_FAILURE
64 #endif /* MBEDTLS_PLATFORM_C */
65 
66 #if defined(MBEDTLS_BASE64_C) && defined(MBEDTLS_FS_IO)
67 #include "mbedtls/error.h"
68 #include "mbedtls/base64.h"
69 
70 #include <stdio.h>
71 #include <stdlib.h>
72 #include <string.h>
73 #endif
74 
75 #define DFL_FILENAME            "file.pem"
76 #define DFL_OUTPUT_FILENAME     "file.der"
77 
78 #define USAGE \
79     "\n usage: pem2der param=<>...\n"                   \
80     "\n acceptable parameters:\n"                       \
81     "    filename=%%s         default: file.pem\n"      \
82     "    output_file=%%s      default: file.der\n"      \
83     "\n"
84 
85 #if !defined(MBEDTLS_BASE64_C) || !defined(MBEDTLS_FS_IO)
main(void)86 int main( void )
87 {
88     mbedtls_printf("MBEDTLS_BASE64_C and/or MBEDTLS_FS_IO not defined.\n");
89     mbedtls_exit( 0 );
90 }
91 #else
92 
93 
94 /*
95  * global options
96  */
97 struct options
98 {
99     const char *filename;       /* filename of the input file             */
100     const char *output_file;    /* where to store the output              */
101 } opt;
102 
convert_pem_to_der(const unsigned char * input,size_t ilen,unsigned char * output,size_t * olen)103 int convert_pem_to_der( const unsigned char *input, size_t ilen,
104                         unsigned char *output, size_t *olen )
105 {
106     int ret;
107     const unsigned char *s1, *s2, *end = input + ilen;
108     size_t len = 0;
109 
110     s1 = (unsigned char *) strstr( (const char *) input, "-----BEGIN" );
111     if( s1 == NULL )
112         return( -1 );
113 
114     s2 = (unsigned char *) strstr( (const char *) input, "-----END" );
115     if( s2 == NULL )
116         return( -1 );
117 
118     s1 += 10;
119     while( s1 < end && *s1 != '-' )
120         s1++;
121     while( s1 < end && *s1 == '-' )
122         s1++;
123     if( *s1 == '\r' ) s1++;
124     if( *s1 == '\n' ) s1++;
125 
126     if( s2 <= s1 || s2 > end )
127         return( -1 );
128 
129     ret = mbedtls_base64_decode( NULL, 0, &len, (const unsigned char *) s1, s2 - s1 );
130     if( ret == MBEDTLS_ERR_BASE64_INVALID_CHARACTER )
131         return( ret );
132 
133     if( len > *olen )
134         return( -1 );
135 
136     if( ( ret = mbedtls_base64_decode( output, len, &len, (const unsigned char *) s1,
137                                s2 - s1 ) ) != 0 )
138     {
139         return( ret );
140     }
141 
142     *olen = len;
143 
144     return( 0 );
145 }
146 
147 /*
148  * Load all data from a file into a given buffer.
149  */
load_file(const char * path,unsigned char ** buf,size_t * n)150 static int load_file( const char *path, unsigned char **buf, size_t *n )
151 {
152     FILE *f;
153     long size;
154 
155     if( ( f = fopen( path, "rb" ) ) == NULL )
156         return( -1 );
157 
158     fseek( f, 0, SEEK_END );
159     if( ( size = ftell( f ) ) == -1 )
160     {
161         fclose( f );
162         return( -1 );
163     }
164     fseek( f, 0, SEEK_SET );
165 
166     *n = (size_t) size;
167 
168     if( *n + 1 == 0 ||
169         ( *buf = mbedtls_calloc( 1, *n + 1 ) ) == NULL )
170     {
171         fclose( f );
172         return( -1 );
173     }
174 
175     if( fread( *buf, 1, *n, f ) != *n )
176     {
177         fclose( f );
178         free( *buf );
179         *buf = NULL;
180         return( -1 );
181     }
182 
183     fclose( f );
184 
185     (*buf)[*n] = '\0';
186 
187     return( 0 );
188 }
189 
190 /*
191  * Write buffer to a file
192  */
write_file(const char * path,unsigned char * buf,size_t n)193 static int write_file( const char *path, unsigned char *buf, size_t n )
194 {
195     FILE *f;
196 
197     if( ( f = fopen( path, "wb" ) ) == NULL )
198         return( -1 );
199 
200     if( fwrite( buf, 1, n, f ) != n )
201     {
202         fclose( f );
203         return( -1 );
204     }
205 
206     fclose( f );
207     return( 0 );
208 }
209 
main(int argc,char * argv[])210 int main( int argc, char *argv[] )
211 {
212     int ret = 1;
213     int exit_code = MBEDTLS_EXIT_FAILURE;
214     unsigned char *pem_buffer = NULL;
215     unsigned char der_buffer[4096];
216     char buf[1024];
217     size_t pem_size, der_size = sizeof(der_buffer);
218     int i;
219     char *p, *q;
220 
221     /*
222      * Set to sane values
223      */
224     memset( buf, 0, sizeof(buf) );
225     memset( der_buffer, 0, sizeof(der_buffer) );
226 
227     if( argc == 0 )
228     {
229     usage:
230         mbedtls_printf( USAGE );
231         goto exit;
232     }
233 
234     opt.filename            = DFL_FILENAME;
235     opt.output_file         = DFL_OUTPUT_FILENAME;
236 
237     for( i = 1; i < argc; i++ )
238     {
239 
240         p = argv[i];
241         if( ( q = strchr( p, '=' ) ) == NULL )
242             goto usage;
243         *q++ = '\0';
244 
245         if( strcmp( p, "filename" ) == 0 )
246             opt.filename = q;
247         else if( strcmp( p, "output_file" ) == 0 )
248             opt.output_file = q;
249         else
250             goto usage;
251     }
252 
253     /*
254      * 1.1. Load the PEM file
255      */
256     mbedtls_printf( "\n  . Loading the PEM file ..." );
257     fflush( stdout );
258 
259     ret = load_file( opt.filename, &pem_buffer, &pem_size );
260 
261     if( ret != 0 )
262     {
263 #ifdef MBEDTLS_ERROR_C
264         mbedtls_strerror( ret, buf, 1024 );
265 #endif
266         mbedtls_printf( " failed\n  !  load_file returned %d - %s\n\n", ret, buf );
267         goto exit;
268     }
269 
270     mbedtls_printf( " ok\n" );
271 
272     /*
273      * 1.2. Convert from PEM to DER
274      */
275     mbedtls_printf( "  . Converting from PEM to DER ..." );
276     fflush( stdout );
277 
278     if( ( ret = convert_pem_to_der( pem_buffer, pem_size, der_buffer, &der_size ) ) != 0 )
279     {
280 #ifdef MBEDTLS_ERROR_C
281         mbedtls_strerror( ret, buf, 1024 );
282 #endif
283         mbedtls_printf( " failed\n  !  convert_pem_to_der %d - %s\n\n", ret, buf );
284         goto exit;
285     }
286 
287     mbedtls_printf( " ok\n" );
288 
289     /*
290      * 1.3. Write the DER file
291      */
292     mbedtls_printf( "  . Writing the DER file ..." );
293     fflush( stdout );
294 
295     ret = write_file( opt.output_file, der_buffer, der_size );
296 
297     if( ret != 0 )
298     {
299 #ifdef MBEDTLS_ERROR_C
300         mbedtls_strerror( ret, buf, 1024 );
301 #endif
302         mbedtls_printf( " failed\n  !  write_file returned %d - %s\n\n", ret, buf );
303         goto exit;
304     }
305 
306     mbedtls_printf( " ok\n" );
307 
308     exit_code = MBEDTLS_EXIT_SUCCESS;
309 
310 exit:
311     free( pem_buffer );
312 
313 #if defined(_WIN32)
314     mbedtls_printf( "  + Press Enter to exit this program.\n" );
315     fflush( stdout ); getchar();
316 #endif
317 
318     mbedtls_exit( exit_code );
319 }
320 #endif /* MBEDTLS_BASE64_C && MBEDTLS_FS_IO */
321