xref: /aosp_15_r20/external/cronet/net/cert/merkle_tree_leaf.cc (revision 6777b5387eb2ff775bb5750e3f5d96f37fb7352b)
1*6777b538SAndroid Build Coastguard Worker // Copyright 2016 The Chromium Authors
2*6777b538SAndroid Build Coastguard Worker // Use of this source code is governed by a BSD-style license that can be
3*6777b538SAndroid Build Coastguard Worker // found in the LICENSE file.
4*6777b538SAndroid Build Coastguard Worker 
5*6777b538SAndroid Build Coastguard Worker #include "net/cert/merkle_tree_leaf.h"
6*6777b538SAndroid Build Coastguard Worker 
7*6777b538SAndroid Build Coastguard Worker #include "crypto/sha2.h"
8*6777b538SAndroid Build Coastguard Worker #include "net/cert/ct_objects_extractor.h"
9*6777b538SAndroid Build Coastguard Worker #include "net/cert/ct_serialization.h"
10*6777b538SAndroid Build Coastguard Worker #include "net/cert/x509_certificate.h"
11*6777b538SAndroid Build Coastguard Worker 
12*6777b538SAndroid Build Coastguard Worker namespace net::ct {
13*6777b538SAndroid Build Coastguard Worker 
14*6777b538SAndroid Build Coastguard Worker MerkleTreeLeaf::MerkleTreeLeaf() = default;
15*6777b538SAndroid Build Coastguard Worker 
16*6777b538SAndroid Build Coastguard Worker MerkleTreeLeaf::MerkleTreeLeaf(const MerkleTreeLeaf& other) = default;
17*6777b538SAndroid Build Coastguard Worker 
18*6777b538SAndroid Build Coastguard Worker MerkleTreeLeaf::MerkleTreeLeaf(MerkleTreeLeaf&&) = default;
19*6777b538SAndroid Build Coastguard Worker 
20*6777b538SAndroid Build Coastguard Worker MerkleTreeLeaf::~MerkleTreeLeaf() = default;
21*6777b538SAndroid Build Coastguard Worker 
HashMerkleTreeLeaf(const MerkleTreeLeaf & tree_leaf,std::string * out)22*6777b538SAndroid Build Coastguard Worker bool HashMerkleTreeLeaf(const MerkleTreeLeaf& tree_leaf, std::string* out) {
23*6777b538SAndroid Build Coastguard Worker   // Prepend 0 byte as per RFC 6962, section-2.1
24*6777b538SAndroid Build Coastguard Worker   std::string leaf_in_tls_format("\x00", 1);
25*6777b538SAndroid Build Coastguard Worker   if (!EncodeTreeLeaf(tree_leaf, &leaf_in_tls_format))
26*6777b538SAndroid Build Coastguard Worker     return false;
27*6777b538SAndroid Build Coastguard Worker 
28*6777b538SAndroid Build Coastguard Worker   *out = crypto::SHA256HashString(leaf_in_tls_format);
29*6777b538SAndroid Build Coastguard Worker   return true;
30*6777b538SAndroid Build Coastguard Worker }
31*6777b538SAndroid Build Coastguard Worker 
GetMerkleTreeLeaf(const X509Certificate * cert,const SignedCertificateTimestamp * sct,MerkleTreeLeaf * merkle_tree_leaf)32*6777b538SAndroid Build Coastguard Worker bool GetMerkleTreeLeaf(const X509Certificate* cert,
33*6777b538SAndroid Build Coastguard Worker                        const SignedCertificateTimestamp* sct,
34*6777b538SAndroid Build Coastguard Worker                        MerkleTreeLeaf* merkle_tree_leaf) {
35*6777b538SAndroid Build Coastguard Worker   if (sct->origin == SignedCertificateTimestamp::SCT_EMBEDDED) {
36*6777b538SAndroid Build Coastguard Worker     if (cert->intermediate_buffers().empty() ||
37*6777b538SAndroid Build Coastguard Worker         !GetPrecertSignedEntry(cert->cert_buffer(),
38*6777b538SAndroid Build Coastguard Worker                                cert->intermediate_buffers().front().get(),
39*6777b538SAndroid Build Coastguard Worker                                &merkle_tree_leaf->signed_entry)) {
40*6777b538SAndroid Build Coastguard Worker       return false;
41*6777b538SAndroid Build Coastguard Worker     }
42*6777b538SAndroid Build Coastguard Worker   } else {
43*6777b538SAndroid Build Coastguard Worker     if (!GetX509SignedEntry(cert->cert_buffer(),
44*6777b538SAndroid Build Coastguard Worker                             &merkle_tree_leaf->signed_entry)) {
45*6777b538SAndroid Build Coastguard Worker       return false;
46*6777b538SAndroid Build Coastguard Worker     }
47*6777b538SAndroid Build Coastguard Worker   }
48*6777b538SAndroid Build Coastguard Worker 
49*6777b538SAndroid Build Coastguard Worker   merkle_tree_leaf->timestamp = sct->timestamp;
50*6777b538SAndroid Build Coastguard Worker   merkle_tree_leaf->extensions = sct->extensions;
51*6777b538SAndroid Build Coastguard Worker   return true;
52*6777b538SAndroid Build Coastguard Worker }
53*6777b538SAndroid Build Coastguard Worker 
54*6777b538SAndroid Build Coastguard Worker }  // namespace net::ct
55