1 /*============LICENSE_START=======================================================
2 * oom-certservice-client
3 * ================================================================================
4 * Copyright (C) 2020 Nokia. All rights reserved.
5 * ================================================================================
6 * Licensed under the Apache License, Version 2.0 (the "License");
7 * you may not use this file except in compliance with the License.
8 * You may obtain a copy of the License at
10 * http://www.apache.org/licenses/LICENSE-2.0
12 * Unless required by applicable law or agreed to in writing, software
13 * distributed under the License is distributed on an "AS IS" BASIS,
14 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
15 * See the License for the specific language governing permissions and
16 * limitations under the License.
17 * ============LICENSE_END=========================================================
20 package org.onap.oom.certservice.client;
22 import static org.onap.oom.certservice.client.api.ExitStatus.SUCCESS;
23 import static org.onap.oom.certservice.client.certification.EncryptionAlgorithmConstants.KEY_SIZE;
24 import static org.onap.oom.certservice.client.certification.EncryptionAlgorithmConstants.RSA_ENCRYPTION_ALGORITHM;
26 import java.security.KeyPair;
27 import javax.net.ssl.SSLContext;
28 import org.onap.oom.certservice.client.api.ExitableException;
29 import org.onap.oom.certservice.client.certification.ArtifactsCreatorProvider;
30 import org.onap.oom.certservice.client.certification.CsrFactory;
31 import org.onap.oom.certservice.client.certification.KeyPairFactory;
32 import org.onap.oom.certservice.client.certification.PrivateKeyToPemEncoder;
33 import org.onap.oom.certservice.client.common.Base64Encoder;
34 import org.onap.oom.certservice.client.configuration.EnvsForClient;
35 import org.onap.oom.certservice.client.configuration.EnvsForCsr;
36 import org.onap.oom.certservice.client.configuration.EnvsForTls;
37 import org.onap.oom.certservice.client.configuration.factory.ClientConfigurationFactory;
38 import org.onap.oom.certservice.client.configuration.factory.CsrConfigurationFactory;
39 import org.onap.oom.certservice.client.configuration.factory.SslContextFactory;
40 import org.onap.oom.certservice.client.configuration.model.ClientConfiguration;
41 import org.onap.oom.certservice.client.configuration.model.CsrConfiguration;
42 import org.onap.oom.certservice.client.configuration.validation.ValidatorsFactory;
43 import org.onap.oom.certservice.client.httpclient.CloseableHttpsClientProvider;
44 import org.onap.oom.certservice.client.httpclient.HttpClient;
45 import org.onap.oom.certservice.client.httpclient.model.CertServiceResponse;
46 import org.slf4j.Logger;
47 import org.slf4j.LoggerFactory;
49 public class CertServiceClient {
51 private static final Logger LOGGER = LoggerFactory.getLogger(CertServiceClient.class);
53 private AppExitHandler appExitHandler;
55 public CertServiceClient(AppExitHandler appExitHandler) {
56 this.appExitHandler = appExitHandler;
60 KeyPairFactory keyPairFactory = new KeyPairFactory(RSA_ENCRYPTION_ALGORITHM, KEY_SIZE);
61 PrivateKeyToPemEncoder pkEncoder = new PrivateKeyToPemEncoder();
62 Base64Encoder base64Encoder = new Base64Encoder();
63 ValidatorsFactory validatorsFactory = new ValidatorsFactory();
65 ClientConfiguration clientConfiguration = new ClientConfigurationFactory(new EnvsForClient(),
66 validatorsFactory).create();
67 CsrConfiguration csrConfiguration = new CsrConfigurationFactory(new EnvsForCsr(), validatorsFactory)
69 KeyPair keyPair = keyPairFactory.create();
70 CsrFactory csrFactory = new CsrFactory(csrConfiguration);
71 SSLContext sslContext = new SslContextFactory(new EnvsForTls()).create();
73 CloseableHttpsClientProvider provider = new CloseableHttpsClientProvider(
74 sslContext, clientConfiguration.getRequestTimeoutInMs());
75 HttpClient httpClient = new HttpClient(provider, clientConfiguration.getUrlToCertService());
77 CertServiceResponse certServiceData =
78 httpClient.retrieveCertServiceData(
79 clientConfiguration.getCaName(),
80 base64Encoder.encode(csrFactory.createCsrInPem(keyPair)),
81 base64Encoder.encode(pkEncoder.encodePrivateKeyToPem(keyPair.getPrivate())));
83 ArtifactsCreatorProvider
84 .get(clientConfiguration.getOutputType(),
85 clientConfiguration.getCertsOutputPath())
86 .create(certServiceData.getCertificateChain(),
87 certServiceData.getTrustedCertificates(),
88 keyPair.getPrivate());
90 } catch (ExitableException e) {
91 LOGGER.error("Cert Service Client fails in execution: ", e);
92 appExitHandler.exit(e.applicationExitStatus());
94 appExitHandler.exit(SUCCESS);