-
Notifications
You must be signed in to change notification settings - Fork 8
/
Copy pathCertificate.php
80 lines (65 loc) · 1.94 KB
/
Certificate.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
<?php
/*
* This file is part of the Acme PHP project.
*
* (c) Titouan Galopin <[email protected]>
*
* For the full copyright and license information, please view the LICENSE
* file that was distributed with this source code.
*/
namespace AcmePhp\Ssl;
use AcmePhp\Ssl\Exception\CertificateFormatException;
use Webmozart\Assert\Assert;
/**
* Represent a Certificate.
*
* @author Jérémy Derussé <[email protected]>
*/
class Certificate
{
/** @var string */
private $certificatePEM;
/** @var Certificate */
private $issuerCertificate;
public function __construct(string $certificatePEM, self $issuerCertificate = null)
{
Assert::stringNotEmpty($certificatePEM, __CLASS__.'::$certificatePEM should not be an empty string. Got %s');
$this->certificatePEM = $certificatePEM;
$this->issuerCertificate = $issuerCertificate;
}
/**
* @return Certificate[]
*/
public function getIssuerChain(): array
{
$chain = [];
$issuerCertificate = $this->getIssuerCertificate();
while (null !== $issuerCertificate) {
$chain[] = $issuerCertificate;
$issuerCertificate = $issuerCertificate->getIssuerCertificate();
}
return $chain;
}
public function getPEM(): string
{
return $this->certificatePEM;
}
public function getIssuerCertificate(): ?self
{
return $this->issuerCertificate;
}
/**
* @return resource
*/
public function getPublicKeyResource()
{
if (!$resource = openssl_pkey_get_public($this->certificatePEM)) {
throw new CertificateFormatException(sprintf('Failed to convert certificate into public key resource: %s', openssl_error_string()));
}
return $resource;
}
public function getPublicKey(): PublicKey
{
return new PublicKey(openssl_pkey_get_details($this->getPublicKeyResource())['key']);
}
}