1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
|
<!-- --- BEGIN COPYRIGHT BLOCK ---
This program is free software; you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation; version 2 of the License.
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License along
with this program; if not, write to the Free Software Foundation, Inc.,
51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
Copyright (C) 2007 Red Hat, Inc.
All rights reserved.
--- END COPYRIGHT BLOCK --- -->
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<HTML>
<HEAD>
<CMS_TEMPLATE>
<TITLE>
CS Enroll Request Success
</TITLE>
</HEAD>
<BODY bgcolor="white">
<font size="+1" face="PrimaSans BT, Verdana, Arial, Helvetica, sans-serif">
Import Certificate(s)
</font>
<font size="-1" face="PrimaSans BT, Verdana, Arial, Helvetica, sans-serif">
<SCRIPT type="text/javascript">
//<!--
function navMajorVersion()
{
return parseInt(
navigator.appVersion.substring(0, navigator.appVersion.indexOf(".")));
}
document.writeln('<P>');
document.writeln('<P>');
if (result.recordSet == null || result.recordSet.length == 0) {
document.writeln('<B><PRE>');
document.writeln('No more information on your certificate is provided.');
document.writeln('Please consult your local administrator for assistance.');
document.writeln('</B></PRE>');
} else {
//document.writeln('<UL>');
for (var i = 0; i < result.recordSet.length; i++) {
if (result.recordSet[i].serialNo != null) {
document.write('Serial number: ');
document.write('<B> 0x'+result.recordSet[i].serialNo+'</B>');
document.writeln('<P>');
document.write('Certificate in Base 64 encoded form:<BR>');
document.write('<PRE>');
document.writeln(result.recordSet[i].base64Cert);
document.write('</PRE>');
document.writeln('<P>');
document.write('Certificate Content: <BR>');
document.write('<PRE>');
document.writeln(result.recordSet[i].certPrettyPrint);
document.write('</PRE>');
}
}
//document.writeln('</UL>');
}
document.writeln('<P>');
// NOTE: importUserCertificate should be done before this point but
// it creates a javascript error that clobbers the result variable set in
// the template.
if (navigator.appName == 'Netscape' && (navMajorVersion() > 3) &&
typeof(crypto.version) != "undefined" &&
typeof(result.fixed.crmfReqId) != "undefined") {
//alert('certNickname is '+result.fixed.certNickname);
//alert(result.fixed.cmmfResponse);
var errors = crypto.importUserCertificates(null,
result.fixed.cmmfResponse, false);
// var errors = crypto.importUserCertificates(result.fixed.certNickname,
// result.fixed.cmmfResponse, false);
// NOTE: Alpha-1 version of cartman always returns a non-empty string
// from importUserCertificates() so we can only always assume succcess.
// Uncomment the following line and add appropriate javascripts/messages
// for use with a later version of cartman.
// This is fixed in Alpha-3. For use with alpha-3 uncomment the lines
if (errors != '') {
document.writeln(
'<b>ERROR</b>Could not import the certificate into your browser '+
'using nickname '+result.fixed.certNickname+'.<p>');
document.writeln(
'The following error message was returned by the browser '+
'when importing the certificate:');
document.writeln('<PRE>');
document.writeln(errors);
document.writeln('</PRE>');
}
else {
document.writeln(
'Your certificate was successfully imported to the browser '+
'with nickname '+result.fixed.certNickname);
}
// removed this block for use with cartman Alpha-3.
//{
//document.writeln(
//'NOTE: Although the certificate was issued, the browser '+
//'may or may not have successfully imported the certificate. '+
//'The following was returned by the browser when importing '+
//'the certificate:');
//document.writeln('<PRE>');
//document.writeln(errors);
//document.writeln('</PRE>');
//document.writeln(
//'If there was an error message you can import the certificate again '+
//'by going to the end entity port and list the certificate by '+
//'its serial number.');
//}
}
//-->
</SCRIPT>
<!--
<OBJECT
classid="clsid:127698e4-e730-4e5c-a2b1-21490a70c8a1"
CODEBASE="/xenroll.dll"
id=Enroll >
</OBJECT>
-->
<SCRIPT LANGUAGE="JavaScript">
//<!--
if (navigator.appName == "Microsoft Internet Explorer") {
if ((navigator.appVersion).indexOf("NT 6.") > -1) {
document.writeln("<OBJECT id='g_objClassFactory' CLASSID='clsid:884e2049-217d-11da-b2a4-000e7bbb2b09'></OBJECT>");
} else {
document.writeln("<OBJECT classid='clsid:127698e4-e730-4e5c-a2b1-21490a70c8a1' CODEBASE='/xenroll.dll' id='Enroll'></OBJECT>");
}
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=VBS>
<!--
'========================================================
'
' In VBS, there are several ways in which the event handler for the
' click event can be bound to the right control. We use one of the
' methods here, which indicates the binding by appending the
' event name to the control name with an intervening '_'.
'
'========================================================
'Get OS Version, works for Vista and below only
Function GetOSVersion
dim agent
dim res
dim pos
agent = Navigator.appVersion
pos = InStr(agent,"NT 6.")
If pos > 0 Then
GetOSVersion = 6
Exit Function
End If
pos = InStr(agent,"NT 5.")
If pos > 0 Then
GetOSVersion = 5
Exit Function
End If
GetOSVersion = 5
End Function
'Sub ImportCertificate
Sub ImportCertificate (pkcs7)
'Dim pkcs7
Dim res
Dim osVersion
On Error Resume Next
osVersion = GetOSVersion()
'Convert the cert to PKCS7 format
'pkcs7 = result.header.pkcs7ChainBase64
'ret = MsgBox(pkcs7, 0, "Import PKCS7 Cert")
If (IsEmpty(pkcs7) OR theError <> 0) Then
ret = MsgBox("Could not convert certificate to PKCS7 format", 0, "Import Cert")
Exit Sub
End If
If osVersion <> 6 Then 'Not Vista
'Import the PKCS7 object
Enroll.DeleteRequestCert = FALSE
Enroll.WriteCertToCSP = true
Enroll.acceptPKCS7(pkcs7)
if err.number <> 0 then
Enroll.WriteCertToCSP = false
end if
err.clear
Enroll.acceptPKCS7(pkcs7)
if err.number = 0 then
MsgBox "Certificate has been successfully imported."
else
sz = "Error in acceptPKCS7. Error Number " & Hex(err.number) & "occurred."
MsgBox sz
end if
Exit Sub
Else 'Vista
Dim enrollObj
Set enrollObj = g_objClassFactory.CreateObject("X509Enrollment.CX509Enrollment")
If IsObject(enrollObj) = False Then
res = MsgBox("Can't create Enroll Object!")
Exit Sub
End If
enrollObj.Initialize(1)
enrollObj.InstallResponse 0,pkcs7,6,""
If Err.number <> 0 Then
sz = "Error in InstallResponse. Error Number " & Hex(err.number) & " occurred."
res =MsgBox(sz & Err.description)
else
res = MsgBox("Certificate has been successfully imported.")
End If
End If
End Sub
'ImportCertificate()
-->
</SCRIPT>
<SCRIPT LANGUAGE="JavaScript">
//<!--
if (navigator.appName == "Microsoft Internet Explorer") {
var pkcs7 = result.header.pkcs7ChainBase64;
//alert("pkcs7="+pkcs7);
ImportCertificate(pkcs7);
}
//-->
</SCRIPT>
</font>
</BODY>
</HTML>
|