summaryrefslogtreecommitdiffstats
path: root/base/ca/shared/webapps/ca/agent/ca/ImportCert.template
blob: 37ad258c00eca82d67f3d5146f5782760b295a8d (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
<!-- --- BEGIN COPYRIGHT BLOCK ---
     This program is free software; you can redistribute it and/or modify
     it under the terms of the GNU General Public License as published by
     the Free Software Foundation; version 2 of the License.

     This program is distributed in the hope that it will be useful,
     but WITHOUT ANY WARRANTY; without even the implied warranty of
     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
     GNU General Public License for more details.

     You should have received a copy of the GNU General Public License along
     with this program; if not, write to the Free Software Foundation, Inc.,
     51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.

     Copyright (C) 2007 Red Hat, Inc.
     All rights reserved.
     --- END COPYRIGHT BLOCK --- -->
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<HTML>
<HEAD>
<CMS_TEMPLATE>
<TITLE>
CS Enroll Request Success
</TITLE>
</HEAD>

<BODY bgcolor="white">

<font size="+1" face="PrimaSans BT, Verdana, Arial, Helvetica, sans-serif">
Import Certificate(s)
</font>

<font size="-1" face="PrimaSans BT, Verdana, Arial, Helvetica, sans-serif">


<SCRIPT type="text/javascript">
//<!--


function navMajorVersion()
{
	return parseInt(
		navigator.appVersion.substring(0, navigator.appVersion.indexOf(".")));
}

document.writeln('<P>');

document.writeln('<P>');

if (result.recordSet == null || result.recordSet.length == 0) {
	document.writeln('<B><PRE>');
	document.writeln('No more information on your certificate is provided.');
	document.writeln('Please consult your local administrator for assistance.');
	document.writeln('</B></PRE>');
} else {
	//document.writeln('<UL>');
	for (var i = 0; i < result.recordSet.length; i++) {
		if (result.recordSet[i].serialNo != null) {
			document.write('Serial number: ');
			document.write('<B> 0x'+result.recordSet[i].serialNo+'</B>');
			document.writeln('<P>');
			document.write('Certificate in Base 64 encoded form:<BR>');
			document.write('<PRE>');
			document.writeln(result.recordSet[i].base64Cert);
			document.write('</PRE>');
			document.writeln('<P>');
			document.write('Certificate Content: <BR>');
			document.write('<PRE>');
			document.writeln(result.recordSet[i].certPrettyPrint);
			document.write('</PRE>');
		}
	}
	//document.writeln('</UL>');
}
document.writeln('<P>');


// NOTE: importUserCertificate should be done before this point  but 
// it creates a javascript error that clobbers the result variable set in 
// the template. 

if (navigator.appName == 'Netscape' && (navMajorVersion() > 3) && 
	typeof(crypto.version) != "undefined" && 
        typeof(result.fixed.crmfReqId) != "undefined") {
	//alert('certNickname is '+result.fixed.certNickname);
	//alert(result.fixed.cmmfResponse);
	var errors = crypto.importUserCertificates(null,
				 result.fixed.cmmfResponse, false);
	// var errors = crypto.importUserCertificates(result.fixed.certNickname,
	//			 result.fixed.cmmfResponse, false);

	// NOTE: Alpha-1 version of cartman always returns a non-empty string 
	// from importUserCertificates() so we can only always assume succcess. 
	// Uncomment the following line and add appropriate javascripts/messages 
	// for use with a later version of cartman.
	// This is fixed in Alpha-3. For use with alpha-3 uncomment the lines

	if (errors != '') {

		document.writeln(
			'<b>ERROR</b>Could not import the certificate into your browser '+
			'using nickname '+result.fixed.certNickname+'.<p>');
		document.writeln(
			'The following error message was returned by the browser '+
			'when importing the certificate:');
		document.writeln('<PRE>');
		document.writeln(errors);
		document.writeln('</PRE>');
	}
	else {
		document.writeln(
		'Your certificate was successfully imported to the browser '+
		'with nickname '+result.fixed.certNickname);
	}
	// removed this block for use with cartman Alpha-3.
	//{ 
	//document.writeln(
		//'NOTE: Although the certificate was issued, the browser '+
		//'may or may not have successfully imported the certificate. '+
		//'The following was returned by the browser when importing '+
		//'the certificate:');
	//document.writeln('<PRE>');
	//document.writeln(errors);
	//document.writeln('</PRE>');
	//document.writeln(
	//'If there was an error message you can import the certificate again '+
	//'by going to the end entity port and list the certificate by '+
	//'its serial number.');
	//}
}

//-->
</SCRIPT>

<!--
<OBJECT
	classid="clsid:127698e4-e730-4e5c-a2b1-21490a70c8a1"
	CODEBASE="/xenroll.dll"
	id=Enroll    >
</OBJECT>
-->

<SCRIPT LANGUAGE="JavaScript">
//<!--
if (navigator.appName == "Microsoft Internet Explorer") {
  if ((navigator.appVersion).indexOf("NT 6.") > -1) {
    document.writeln("<OBJECT id='g_objClassFactory' CLASSID='clsid:884e2049-217d-11da-b2a4-000e7bbb2b09'></OBJECT>");
  } else {
    document.writeln("<OBJECT classid='clsid:127698e4-e730-4e5c-a2b1-21490a70c8a1' CODEBASE='/xenroll.dll' id='Enroll'></OBJECT>");
  }
}
//-->
</SCRIPT>

<SCRIPT LANGUAGE=VBS>
<!--
'========================================================
'
' In VBS, there are several ways in which the event handler for the
' click event can be bound to the right control. We use one of the
' methods here, which indicates the binding by appending the
' event name to the control name with an intervening '_'.
'
'========================================================

        'Get OS Version, works for Vista and below only
        Function GetOSVersion
               dim agent
               dim res
               dim pos

               agent = Navigator.appVersion
               pos = InStr(agent,"NT 6.")

               If pos > 0 Then
                  GetOSVersion = 6
                  Exit Function
               End If

               pos = InStr(agent,"NT 5.")

               If pos > 0 Then
                  GetOSVersion = 5
                  Exit Function
               End If

               GetOSVersion = 5
        End Function

	'Sub ImportCertificate
	Sub ImportCertificate (pkcs7)
		'Dim pkcs7
		Dim res
		Dim osVersion

		On Error Resume Next
		osVersion = GetOSVersion()

		'Convert the cert to PKCS7 format
		'pkcs7 = result.header.pkcs7ChainBase64
		'ret = MsgBox(pkcs7, 0, "Import PKCS7 Cert")
		If (IsEmpty(pkcs7) OR theError <> 0) Then
			ret = MsgBox("Could not convert certificate to PKCS7 format", 0, "Import Cert")
			Exit Sub
		End If

		If osVersion <> 6 Then  'Not Vista

		  'Import the PKCS7 object
		  Enroll.DeleteRequestCert = FALSE
		  Enroll.WriteCertToCSP = true
		  Enroll.acceptPKCS7(pkcs7)
		  if err.number <> 0 then
			Enroll.WriteCertToCSP = false
		  end if
		  err.clear
		  Enroll.acceptPKCS7(pkcs7)
		  if err.number = 0 then
			MsgBox "Certificate has been successfully imported."
		  else
			sz = "Error in acceptPKCS7. Error Number " & Hex(err.number) & "occurred."
			MsgBox sz
		  end if
		  Exit Sub
                Else  'Vista
                  Dim enrollObj

                  Set enrollObj = g_objClassFactory.CreateObject("X509Enrollment.CX509Enrollment")
                  If IsObject(enrollObj) =  False Then
                    res = MsgBox("Can't create Enroll Object!")
                    Exit Sub
                  End If

                  enrollObj.Initialize(1)
                  enrollObj.InstallResponse 0,pkcs7,6,""

                  If Err.number <> 0 Then
                    sz = "Error in InstallResponse. Error Number " & Hex(err.number) & " occurred."
                    res =MsgBox(sz & Err.description)
                  else
                    res = MsgBox("Certificate has been successfully imported.")
                  End If
                End If
        End Sub

        'ImportCertificate()
-->
</SCRIPT>

<SCRIPT LANGUAGE="JavaScript">
//<!--
if (navigator.appName == "Microsoft Internet Explorer") {
  var pkcs7 = result.header.pkcs7ChainBase64;
  //alert("pkcs7="+pkcs7);
  ImportCertificate(pkcs7);
}
//-->
</SCRIPT>

</font>
</BODY>
</HTML>