2019-02-25 14:48:22 +01:00
|
|
|
/* Icinga 2 | (c) 2012 Icinga GmbH | GPLv2+ */
|
2017-08-23 12:12:43 +02:00
|
|
|
|
|
|
|
#include "cli/calistcommand.hpp"
|
2017-09-05 14:21:30 +02:00
|
|
|
#include "remote/apilistener.hpp"
|
2017-09-05 14:44:56 +02:00
|
|
|
#include "remote/pkiutility.hpp"
|
2017-08-23 12:12:43 +02:00
|
|
|
#include "base/logger.hpp"
|
|
|
|
#include "base/application.hpp"
|
|
|
|
#include "base/tlsutility.hpp"
|
2017-09-05 14:16:26 +02:00
|
|
|
#include "base/json.hpp"
|
2017-10-02 13:49:42 +02:00
|
|
|
#include <iostream>
|
2017-08-23 12:12:43 +02:00
|
|
|
|
|
|
|
using namespace icinga;
|
2017-09-05 14:16:26 +02:00
|
|
|
namespace po = boost::program_options;
|
2017-08-23 12:12:43 +02:00
|
|
|
|
|
|
|
REGISTER_CLICOMMAND("ca/list", CAListCommand);
|
|
|
|
|
2018-01-04 04:25:35 +01:00
|
|
|
String CAListCommand::GetDescription() const
|
2017-08-23 12:12:43 +02:00
|
|
|
{
|
2018-10-09 17:40:04 +02:00
|
|
|
return "Lists pending certificate signing requests.";
|
2017-08-23 12:12:43 +02:00
|
|
|
}
|
|
|
|
|
2018-01-04 04:25:35 +01:00
|
|
|
String CAListCommand::GetShortDescription() const
|
2017-08-23 12:12:43 +02:00
|
|
|
{
|
2018-10-09 17:40:04 +02:00
|
|
|
return "lists pending certificate signing requests";
|
2017-08-23 12:12:43 +02:00
|
|
|
}
|
|
|
|
|
2017-09-05 14:16:26 +02:00
|
|
|
void CAListCommand::InitParameters(boost::program_options::options_description& visibleDesc,
|
2017-12-19 15:50:05 +01:00
|
|
|
boost::program_options::options_description& hiddenDesc) const
|
2017-09-05 14:16:26 +02:00
|
|
|
{
|
|
|
|
visibleDesc.add_options()
|
2018-10-09 17:40:04 +02:00
|
|
|
("all", "List all certificate signing requests, including signed. Note: Old requests are automatically cleaned by Icinga after 1 week.")
|
2019-05-10 17:57:42 +02:00
|
|
|
("removed", "List all removed CSRs (for use with 'ca restore')")
|
2018-10-09 17:40:04 +02:00
|
|
|
("json", "encode output as JSON");
|
2017-09-05 14:16:26 +02:00
|
|
|
}
|
2017-08-23 12:12:43 +02:00
|
|
|
|
|
|
|
/**
|
|
|
|
* The entry point for the "ca list" CLI command.
|
|
|
|
*
|
|
|
|
* @returns An exit status.
|
|
|
|
*/
|
|
|
|
int CAListCommand::Run(const boost::program_options::variables_map& vm, const std::vector<std::string>& ap) const
|
|
|
|
{
|
2019-05-10 17:57:42 +02:00
|
|
|
Dictionary::Ptr requests = PkiUtility::GetCertificateRequests(vm.count("removed"));
|
2017-09-05 14:16:26 +02:00
|
|
|
|
|
|
|
if (vm.count("json"))
|
|
|
|
std::cout << JsonEncode(requests);
|
|
|
|
else {
|
|
|
|
ObjectLock olock(requests);
|
|
|
|
|
2017-09-12 13:09:16 +02:00
|
|
|
std::cout << "Fingerprint | Timestamp | Signed | Subject\n";
|
|
|
|
std::cout << "-----------------------------------------------------------------|--------------------------|--------|--------\n";
|
2017-09-05 14:16:26 +02:00
|
|
|
|
|
|
|
for (auto& kv : requests) {
|
|
|
|
Dictionary::Ptr request = kv.second;
|
|
|
|
|
2018-10-09 17:40:04 +02:00
|
|
|
/* Skip signed requests by default. */
|
|
|
|
if (!vm.count("all") && request->Contains("cert_response"))
|
|
|
|
continue;
|
|
|
|
|
2017-09-05 14:16:26 +02:00
|
|
|
std::cout << kv.first
|
2017-12-19 15:50:05 +01:00
|
|
|
<< " | "
|
2017-09-12 13:09:16 +02:00
|
|
|
/* << Utility::FormatDateTime("%Y/%m/%d %H:%M:%S", request->Get("timestamp")) */
|
2017-12-19 15:50:05 +01:00
|
|
|
<< request->Get("timestamp")
|
|
|
|
<< " | "
|
|
|
|
<< (request->Contains("cert_response") ? "*" : " ") << " "
|
|
|
|
<< " | "
|
|
|
|
<< request->Get("subject")
|
|
|
|
<< "\n";
|
2017-09-05 14:16:26 +02:00
|
|
|
}
|
|
|
|
}
|
2017-08-23 12:12:43 +02:00
|
|
|
|
|
|
|
return 0;
|
|
|
|
}
|