Files
phpki/root/ns_revoke_query.php

36 lines
1.1 KiB
PHP
Raw Permalink Normal View History

2025-09-10 23:01:43 -04:00
<?php
#
# This is to support the NetscapeRevocationURL extension that can
# be used to check the validity of certificates issued by this CA.
# The URL to this script is embeded in all certificates issued by
# this CA.
#
# PROTOCOL:
# The client should issue an HTTP GET request using a URL that is
# the concatenation of the revocation url and certificate serial
2025-09-10 23:01:43 -04:00
# number. (i.e. http://www.host.dom/phpki/ns_revoke_query.php?10A5F2)
#
# The server should return a document of type
2025-09-10 23:01:43 -04:00
# application/x-netscape-revocation containing a single character
# '1' if the certificate is revoked, '0' if it is valid.
#
include('./config.php');
2025-09-10 23:01:43 -04:00
include(STORE_DIR.'/config/config.php');
$serial=trim($_SERVER['QUERY_STRING']);
if ( ! is_numeric($serial) ) {
# if it is not a numerical serial, then it is not revoked!
print '0';
exit;
}
$serial = escapeshellcmd($serial);
#header("Content-type: application/x-netscape-revocation");
$regexp = "^R\t.*\t.*\t$serial\t.*\t.*$";
$configIndex = $config['index'];
if (exec("egrep '$regexp' '$configIndex'")) {
print '1';
} else {
print '0';
}