File: cn_reject_handler.hpp

package info (click to toggle)
openvpn3-client 25%2Bdfsg-3
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid
  • size: 19,276 kB
  • sloc: cpp: 190,085; python: 7,218; ansic: 1,866; sh: 1,361; java: 402; lisp: 81; makefile: 17
file content (40 lines) | stat: -rw-r--r-- 1,033 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
//    OpenVPN -- An application to securely tunnel IP networks
//               over a single port, with support for SSL/TLS-based
//               session authentication and key exchange,
//               packet encryption, packet authentication, and
//               packet compression.
//
//    Copyright (C) 2012- OpenVPN Inc.
//
//    SPDX-License-Identifier: MPL-2.0 OR AGPL-3.0-only WITH openvpn3-openssl-exception
//

#pragma once

#include <string>
#include <memory>

namespace openvpn {

/**
 * Abstract base class used to provide early rejection
 * of specific Common Names during SSL/TLS handshake.
 */
class CommonNameReject
{
  public:
    typedef std::unique_ptr<CommonNameReject> UPtr;

    /**
     * Should a leaf certificate having Common Name cn
     * be rejected during SSL/TLS handshake?
     *
     * @param cn Common Name
     * @return true if certificate should be rejected.
     */
    virtual bool reject(const std::string &cn) = 0;

    virtual ~CommonNameReject() = default;
};

} // namespace openvpn