sessioninfo.c 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112
  1. /***************************************************************************
  2. * _ _ ____ _
  3. * Project ___| | | | _ \| |
  4. * / __| | | | |_) | |
  5. * | (__| |_| | _ <| |___
  6. * \___|\___/|_| \_\_____|
  7. *
  8. * Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al.
  9. *
  10. * This software is licensed as described in the file COPYING, which
  11. * you should have received as part of this distribution. The terms
  12. * are also available at https://curl.se/docs/copyright.html.
  13. *
  14. * You may opt to use, copy, modify, merge, publish, distribute and/or sell
  15. * copies of the Software, and permit persons to whom the Software is
  16. * furnished to do so, under the terms of the COPYING file.
  17. *
  18. * This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY
  19. * KIND, either express or implied.
  20. *
  21. * SPDX-License-Identifier: curl
  22. *
  23. ***************************************************************************/
  24. /* <DESC>
  25. * Uses the CURLINFO_TLS_SESSION data.
  26. * </DESC>
  27. */
  28. /* Note that this example currently requires curl to be linked against
  29. GnuTLS (and this program must also be linked against -lgnutls). */
  30. #include <stdio.h>
  31. #include <curl/curl.h>
  32. #include <gnutls/gnutls.h>
  33. #include <gnutls/x509.h>
  34. static CURL *curl;
  35. static size_t wrfu(void *ptr, size_t size, size_t nmemb, void *stream)
  36. {
  37. const struct curl_tlssessioninfo *info;
  38. unsigned int cert_list_size;
  39. const gnutls_datum_t *chainp;
  40. CURLcode res;
  41. (void)stream;
  42. (void)ptr;
  43. res = curl_easy_getinfo(curl, CURLINFO_TLS_SESSION, &info);
  44. if(!res) {
  45. switch(info->backend) {
  46. case CURLSSLBACKEND_GNUTLS:
  47. /* info->internals is now the gnutls_session_t */
  48. chainp = gnutls_certificate_get_peers(info->internals, &cert_list_size);
  49. if((chainp) && (cert_list_size)) {
  50. unsigned int i;
  51. for(i = 0; i < cert_list_size; i++) {
  52. gnutls_x509_crt_t cert;
  53. gnutls_datum_t dn;
  54. if(GNUTLS_E_SUCCESS == gnutls_x509_crt_init(&cert)) {
  55. if(GNUTLS_E_SUCCESS ==
  56. gnutls_x509_crt_import(cert, &chainp[i], GNUTLS_X509_FMT_DER)) {
  57. if(GNUTLS_E_SUCCESS ==
  58. gnutls_x509_crt_print(cert, GNUTLS_CRT_PRINT_FULL, &dn)) {
  59. fprintf(stderr, "Certificate #%u: %.*s", i, dn.size, dn.data);
  60. gnutls_free(dn.data);
  61. }
  62. }
  63. gnutls_x509_crt_deinit(cert);
  64. }
  65. }
  66. }
  67. break;
  68. case CURLSSLBACKEND_NONE:
  69. default:
  70. break;
  71. }
  72. }
  73. return size * nmemb;
  74. }
  75. int main(void)
  76. {
  77. curl_global_init(CURL_GLOBAL_DEFAULT);
  78. curl = curl_easy_init();
  79. if(curl) {
  80. curl_easy_setopt(curl, CURLOPT_URL, "https://www.example.com/");
  81. curl_easy_setopt(curl, CURLOPT_WRITEFUNCTION, wrfu);
  82. curl_easy_setopt(curl, CURLOPT_SSL_VERIFYPEER, 0L);
  83. curl_easy_setopt(curl, CURLOPT_SSL_VERIFYHOST, 0L);
  84. curl_easy_setopt(curl, CURLOPT_VERBOSE, 0L);
  85. (void) curl_easy_perform(curl);
  86. curl_easy_cleanup(curl);
  87. }
  88. curl_global_cleanup();
  89. return 0;
  90. }