summaryrefslogtreecommitdiff
path: root/src/certificate_chain.h
blob: dcb9c1418e07b6d1443f7afe04ad218b97b9e26f (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
/*
    Copyright (C) 2013-2014 Carl Hetherington <cth@carlh.net>

    This program is free software; you can redistribute it and/or modify
    it under the terms of the GNU General Public License as published by
    the Free Software Foundation; either version 2 of the License, or
    (at your option) any later version.

    This program is distributed in the hope that it will be useful,
    but WITHOUT ANY WARRANTY; without even the implied warranty of
    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
    GNU General Public License for more details.

    You should have received a copy of the GNU General Public License
    along with this program; if not, write to the Free Software
    Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.

*/

/** @file  src/signer_chain.h
 *  @brief Functions to make signer chains.
 */

#include <boost/filesystem.hpp>

namespace dcp {

/** Create a chain of certificates for signing things.
 *  @param openssl Name of openssl binary (if it is on the path) or full path.
 *  @return Directory (which should be deleted by the caller) containing:
 *    - ca.self-signed.pem      self-signed root certificate
 *    - intermediate.signed.pem intermediate certificate
 *    - leaf.key                leaf certificate private key
 *    - leaf.signed.pem         leaf certificate
 */
boost::filesystem::path make_certificate_chain (
	boost::filesystem::path openssl,
	std::string organisation = "example.org",
	std::string organisational_unit = "example.org",
	std::string root_common_name = ".smpte-430-2.ROOT.NOT_FOR_PRODUCTION",
	std::string intermediate_common_name = ".smpte-430-2.INTERMEDIATE.NOT_FOR_PRODUCTION",
	std::string leaf_common_name = "CS.smpte-430-2.LEAF.NOT_FOR_PRODUCTION"
	);

}