### # Copyright (c) 2005, Ali Afshar # All rights reserved. # # Redistribution and use in source and binary forms, with or without # modification, are permitted provided that the following conditions are met: # # * Redistributions of source code must retain the above copyright notice, # this list of conditions, and the following disclaimer. # * Redistributions in binary form must reproduce the above copyright notice, # this list of conditions, and the following disclaimer in the # documentation and/or other materials provided with the distribution. # * Neither the name of the author of this software nor the name of # contributors to this software may be used to endorse or promote products # derived from this software without specific prior written consent. # # THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" # AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE # ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE # LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR # CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF # SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS # INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN # CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) # ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE # POSSIBILITY OF SUCH DAMAGE. ### import os try: from OpenSSL import SSL except ImportError: raise Exception, 'PyOpenSSL must be installed to use SSL' class SBSSLContextFactory: """ Context for providing SSL wrapping with OpenSSL """ def getContext(self): """Create an SSL context. This is a sample implementation that loads a certificate from a file""" ctx = SSL.Context(SSL.SSLv23_METHOD) ssldir = self.cb.cb.datapaths['keys.ssl'] filepath = '%s%s%s' % (ssldir, os.sep, self.cb.mainRegistryValue('keys.sslCertificateFile')) keypath = '%s%s%s' % (ssldir, os.sep, self.cb.mainRegistryValue('keys.sslKeyFile')) self.cb.cb.log.debug('Using SSL keyfile %s, certfile %s', keypath, filepath) try: ctx.use_certificate_file(filepath) except: raise Exception, 'Your SSL key file is missing or faulty' try: ctx.use_privatekey_file(keypath) except: raise Exception, 'Your SSL certificate file is missing or faulty' return ctx # vim:set shiftwidth=4 softtabstop=4 expandtab textwidth=79: