1ebfedea0SLionel Sambuc /* Simple S/MIME verification example */
2ebfedea0SLionel Sambuc #include <openssl/pem.h>
3ebfedea0SLionel Sambuc #include <openssl/pkcs7.h>
4ebfedea0SLionel Sambuc #include <openssl/err.h>
5ebfedea0SLionel Sambuc
main(int argc,char ** argv)6ebfedea0SLionel Sambuc int main(int argc, char **argv)
7ebfedea0SLionel Sambuc {
8ebfedea0SLionel Sambuc BIO *in = NULL, *out = NULL, *tbio = NULL, *cont = NULL;
9ebfedea0SLionel Sambuc X509_STORE *st = NULL;
10ebfedea0SLionel Sambuc X509 *cacert = NULL;
11ebfedea0SLionel Sambuc PKCS7 *p7 = NULL;
12ebfedea0SLionel Sambuc
13ebfedea0SLionel Sambuc int ret = 1;
14ebfedea0SLionel Sambuc
15ebfedea0SLionel Sambuc OpenSSL_add_all_algorithms();
16ebfedea0SLionel Sambuc ERR_load_crypto_strings();
17ebfedea0SLionel Sambuc
18ebfedea0SLionel Sambuc /* Set up trusted CA certificate store */
19ebfedea0SLionel Sambuc
20ebfedea0SLionel Sambuc st = X509_STORE_new();
21ebfedea0SLionel Sambuc
22ebfedea0SLionel Sambuc /* Read in signer certificate and private key */
23ebfedea0SLionel Sambuc tbio = BIO_new_file("cacert.pem", "r");
24ebfedea0SLionel Sambuc
25ebfedea0SLionel Sambuc if (!tbio)
26ebfedea0SLionel Sambuc goto err;
27ebfedea0SLionel Sambuc
28ebfedea0SLionel Sambuc cacert = PEM_read_bio_X509(tbio, NULL, 0, NULL);
29ebfedea0SLionel Sambuc
30ebfedea0SLionel Sambuc if (!cacert)
31ebfedea0SLionel Sambuc goto err;
32ebfedea0SLionel Sambuc
33ebfedea0SLionel Sambuc if (!X509_STORE_add_cert(st, cacert))
34ebfedea0SLionel Sambuc goto err;
35ebfedea0SLionel Sambuc
36ebfedea0SLionel Sambuc /* Open content being signed */
37ebfedea0SLionel Sambuc
38ebfedea0SLionel Sambuc in = BIO_new_file("smout.txt", "r");
39ebfedea0SLionel Sambuc
40ebfedea0SLionel Sambuc if (!in)
41ebfedea0SLionel Sambuc goto err;
42ebfedea0SLionel Sambuc
43ebfedea0SLionel Sambuc /* Sign content */
44ebfedea0SLionel Sambuc p7 = SMIME_read_PKCS7(in, &cont);
45ebfedea0SLionel Sambuc
46ebfedea0SLionel Sambuc if (!p7)
47ebfedea0SLionel Sambuc goto err;
48ebfedea0SLionel Sambuc
49ebfedea0SLionel Sambuc /* File to output verified content to */
50ebfedea0SLionel Sambuc out = BIO_new_file("smver.txt", "w");
51ebfedea0SLionel Sambuc if (!out)
52ebfedea0SLionel Sambuc goto err;
53ebfedea0SLionel Sambuc
54*0a6a1f1dSLionel Sambuc if (!PKCS7_verify(p7, NULL, st, cont, out, 0)) {
55ebfedea0SLionel Sambuc fprintf(stderr, "Verification Failure\n");
56ebfedea0SLionel Sambuc goto err;
57ebfedea0SLionel Sambuc }
58ebfedea0SLionel Sambuc
59ebfedea0SLionel Sambuc fprintf(stderr, "Verification Successful\n");
60ebfedea0SLionel Sambuc
61ebfedea0SLionel Sambuc ret = 0;
62ebfedea0SLionel Sambuc
63ebfedea0SLionel Sambuc err:
64ebfedea0SLionel Sambuc
65*0a6a1f1dSLionel Sambuc if (ret) {
66ebfedea0SLionel Sambuc fprintf(stderr, "Error Verifying Data\n");
67ebfedea0SLionel Sambuc ERR_print_errors_fp(stderr);
68ebfedea0SLionel Sambuc }
69ebfedea0SLionel Sambuc
70ebfedea0SLionel Sambuc if (p7)
71ebfedea0SLionel Sambuc PKCS7_free(p7);
72ebfedea0SLionel Sambuc
73ebfedea0SLionel Sambuc if (cacert)
74ebfedea0SLionel Sambuc X509_free(cacert);
75ebfedea0SLionel Sambuc
76ebfedea0SLionel Sambuc if (in)
77ebfedea0SLionel Sambuc BIO_free(in);
78ebfedea0SLionel Sambuc if (out)
79ebfedea0SLionel Sambuc BIO_free(out);
80ebfedea0SLionel Sambuc if (tbio)
81ebfedea0SLionel Sambuc BIO_free(tbio);
82ebfedea0SLionel Sambuc
83ebfedea0SLionel Sambuc return ret;
84ebfedea0SLionel Sambuc
85ebfedea0SLionel Sambuc }
86