2
0

sessioninfo.c 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113
  1. /***************************************************************************
  2. * _ _ ____ _
  3. * Project ___| | | | _ \| |
  4. * / __| | | | |_) | |
  5. * | (__| |_| | _ <| |___
  6. * \___|\___/|_| \_\_____|
  7. *
  8. * Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al.
  9. *
  10. * This software is licensed as described in the file COPYING, which
  11. * you should have received as part of this distribution. The terms
  12. * are also available at https://curl.se/docs/copyright.html.
  13. *
  14. * You may opt to use, copy, modify, merge, publish, distribute and/or sell
  15. * copies of the Software, and permit persons to whom the Software is
  16. * furnished to do so, under the terms of the COPYING file.
  17. *
  18. * This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY
  19. * KIND, either express or implied.
  20. *
  21. * SPDX-License-Identifier: curl
  22. *
  23. ***************************************************************************/
  24. /* <DESC>
  25. * Uses the CURLINFO_TLS_SESSION data.
  26. * </DESC>
  27. */
  28. /* Note that this example currently requires curl to be linked against
  29. GnuTLS (and this program must also be linked against -lgnutls). */
  30. #include <stdio.h>
  31. #include <curl/curl.h>
  32. #include <gnutls/gnutls.h>
  33. #include <gnutls/x509.h>
  34. static CURL *curl;
  35. static size_t wrfu(void *ptr, size_t size, size_t nmemb, void *stream)
  36. {
  37. const struct curl_tlssessioninfo *info;
  38. unsigned int cert_list_size;
  39. const gnutls_datum_t *chainp;
  40. CURLcode res;
  41. (void)stream;
  42. (void)ptr;
  43. res = CURL_IGNORE_DEPRECATION(
  44. curl_easy_getinfo(curl, CURLINFO_TLS_SESSION, &info));
  45. if(!res) {
  46. switch(info->backend) {
  47. case CURLSSLBACKEND_GNUTLS:
  48. /* info->internals is now the gnutls_session_t */
  49. chainp = gnutls_certificate_get_peers(info->internals, &cert_list_size);
  50. if((chainp) && (cert_list_size)) {
  51. unsigned int i;
  52. for(i = 0; i < cert_list_size; i++) {
  53. gnutls_x509_crt_t cert;
  54. gnutls_datum_t dn;
  55. if(GNUTLS_E_SUCCESS == gnutls_x509_crt_init(&cert)) {
  56. if(GNUTLS_E_SUCCESS ==
  57. gnutls_x509_crt_import(cert, &chainp[i], GNUTLS_X509_FMT_DER)) {
  58. if(GNUTLS_E_SUCCESS ==
  59. gnutls_x509_crt_print(cert, GNUTLS_CRT_PRINT_FULL, &dn)) {
  60. fprintf(stderr, "Certificate #%u: %.*s", i, dn.size, dn.data);
  61. gnutls_free(dn.data);
  62. }
  63. }
  64. gnutls_x509_crt_deinit(cert);
  65. }
  66. }
  67. }
  68. break;
  69. case CURLSSLBACKEND_NONE:
  70. default:
  71. break;
  72. }
  73. }
  74. return size * nmemb;
  75. }
  76. int main(void)
  77. {
  78. curl_global_init(CURL_GLOBAL_DEFAULT);
  79. curl = curl_easy_init();
  80. if(curl) {
  81. curl_easy_setopt(curl, CURLOPT_URL, "https://www.example.com/");
  82. curl_easy_setopt(curl, CURLOPT_WRITEFUNCTION, wrfu);
  83. curl_easy_setopt(curl, CURLOPT_SSL_VERIFYPEER, 0L);
  84. curl_easy_setopt(curl, CURLOPT_SSL_VERIFYHOST, 0L);
  85. curl_easy_setopt(curl, CURLOPT_VERBOSE, 0L);
  86. (void) curl_easy_perform(curl);
  87. curl_easy_cleanup(curl);
  88. }
  89. curl_global_cleanup();
  90. return 0;
  91. }