1 #ifndef LIBFILEZILLA_TLS_INFO_HEADER
2 #define LIBFILEZILLA_TLS_INFO_HEADER
33 std::vector<uint8_t> const& rawData,
35 std::
string const& serial,
36 std::
string const& pkalgoname,
unsigned int bits,
37 std::
string const& signalgoname,
38 std::
string const& fingerprint_sha256,
39 std::
string const& fingerprint_sha1,
40 std::
string const& issuer,
41 std::
string const& subject,
46 std::vector<uint8_t> && rawdata,
48 std::
string const& serial,
49 std::
string const& pkalgoname,
unsigned int bits,
50 std::
string const& signalgoname,
51 std::
string const& fingerprint_sha256,
52 std::
string const& fingerprint_sha1,
53 std::
string const& issuer,
54 std::
string const& subject,
56 bool const self_Signed);
62 fz::datetime const& get_activation_time()
const {
return activation_time_; }
63 fz::datetime const& get_expiration_time()
const {
return expiration_time_; }
65 std::string
const& get_serial()
const {
return serial_; }
89 std::string
const&
get_issuer()
const {
return issuer_; }
94 explicit operator bool()
const {
return !raw_cert_.empty(); }
103 std::vector<uint8_t> raw_cert_;
106 std::string pkalgoname_;
107 unsigned int pkalgobits_{};
109 std::string signalgoname_;
111 std::string fingerprint_sha256_;
112 std::string fingerprint_sha1_;
115 std::string subject_;
117 std::vector<subject_name> alt_subject_names_;
142 std::string
const& protocol,
143 std::string
const& key_exchange,
144 std::string
const& session_cipher,
145 std::string
const& session_mac,
146 int algorithm_warnings,
147 std::vector<x509_certificate>&& certificates,
149 bool hostname_mismatch);
152 std::string
const&
get_host()
const {
return host_; }
170 std::vector<fz::x509_certificate>
const&
get_certificates()
const {
return certificates_; }
178 enum algorithm_warnings_t
198 unsigned int port_{};
200 std::string protocol_;
201 std::string key_exchange_;
202 std::string session_cipher_;
203 std::string session_mac_;
204 int algorithm_warnings_{};
206 std::vector<x509_certificate> certificates_;
208 bool system_trust_{};
209 bool hostname_mismatch_{};
Represents all relevant information of a X.509 certificate as used by TLS.
Definition: tls_info.hpp:14
std::string const & get_pubkey_algorithm() const
The public key algorithm used by the certificate.
Definition: tls_info.hpp:68
int get_algorithm_warnings() const
Warnings about old algorithms used, which are considered weak.
Definition: tls_info.hpp:187
std::string const & get_session_mac() const
The MAC used for integrity-protect and authenticate the exchanged application data.
Definition: tls_info.hpp:161
std::vector< uint8_t > get_raw_data() const
The raw, DER-encoded X.509 certificate.
Definition: tls_info.hpp:60
std::string const & get_signature_algorithm() const
The algorithm used for signing, typically the public key algorithm combined with a hash...
Definition: tls_info.hpp:74
std::string const & get_session_cipher() const
The symmetric algorithm used to encrypt all exchanged application data.
Definition: tls_info.hpp:158
std::vector< fz::x509_certificate > const & get_certificates() const
The server's certificate chain.
Definition: tls_info.hpp:170
Information about a TLS session.
Definition: tls_info.hpp:131
unsigned int get_port() const
The server's port.
Definition: tls_info.hpp:155
std::string const & get_fingerprint_sha256() const
Gets fingerprint as hex-encoded sha256.
Definition: tls_info.hpp:77
unsigned int get_pubkey_bits() const
The number of bits of the public key algorithm.
Definition: tls_info.hpp:71
std::vector< subject_name > const & get_alt_subject_names() const
Gets the alternative subject names (SANSs) of the certificated, usually hostnames.
Definition: tls_info.hpp:92
Represents a point of time in wallclock, tracking the timestamps accuracy/precision.
Definition: time.hpp:40
Assorted classes dealing with time.
A subject name, typically a DNS hostname.
Definition: tls_info.hpp:18
std::string const & get_fingerprint_sha1() const
Gets fingerprint as hex-encoded sha1.
Definition: tls_info.hpp:80
bool self_signed() const
Indicates whether the certificate is self-signed.
Definition: tls_info.hpp:97
The namespace used by libfilezilla.
Definition: apply.hpp:17
std::string const & get_protocol() const
TLS version.
Definition: tls_info.hpp:173
bool system_trust() const
Definition: tls_info.hpp:191
bool mismatched_hostname() const
True if the hostname in the SANs does not match the requested hostname.
Definition: tls_info.hpp:194
std::string const & get_issuer() const
Gets the issuer of the certificate as RDN as described in RFC4514.
Definition: tls_info.hpp:89
std::string const & get_key_exchange() const
Key exchange algorithm.
Definition: tls_info.hpp:176
std::string const & get_subject() const
Gets the subject of the certificate as RDN as described in RFC4514.
Definition: tls_info.hpp:86
std::string const & get_host() const
The server's hostname used to connect.
Definition: tls_info.hpp:152