###
# Copyright (c) 2005, Ali Afshar
# All rights reserved.
#
# Redistribution and use in source and binary forms, with or without
# modification, are permitted provided that the following conditions are met:
#
# * Redistributions of source code must retain the above copyright notice,
# this list of conditions, and the following disclaimer.
# * Redistributions in binary form must reproduce the above copyright notice,
# this list of conditions, and the following disclaimer in the
# documentation and/or other materials provided with the distribution.
# * Neither the name of the author of this software nor the name of
# contributors to this software may be used to endorse or promote products
# derived from this software without specific prior written consent.
#
# THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
# AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
# ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
# LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
# CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
# SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
# INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
# CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
# ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
# POSSIBILITY OF SUCH DAMAGE.
###
import os
try:
from OpenSSL import SSL
except ImportError:
raise Exception, 'PyOpenSSL must be installed to use SSL'
class SBSSLContextFactory:
""" Context for providing SSL wrapping with OpenSSL """
def getContext(self):
"""Create an SSL context.
This is a sample implementation that loads a certificate from a file"""
ctx = SSL.Context(SSL.SSLv23_METHOD)
ssldir = self.cb.cb.datapaths['keys.ssl']
filepath = '%s%s%s' % (ssldir, os.sep,
self.cb.mainRegistryValue('keys.sslCertificateFile'))
keypath = '%s%s%s' % (ssldir, os.sep,
self.cb.mainRegistryValue('keys.sslKeyFile'))
self.cb.cb.log.debug('Using SSL keyfile %s, certfile %s',
keypath, filepath)
try:
ctx.use_certificate_file(filepath)
except:
raise Exception, 'Your SSL key file is missing or faulty'
try:
ctx.use_privatekey_file(keypath)
except:
raise Exception, 'Your SSL certificate file is missing or faulty'
return ctx
# vim:set shiftwidth=4 softtabstop=4 expandtab textwidth=79:
syntax highlighted by Code2HTML, v. 0.9.1