Python OpenSSL 解析证书

openssl 介绍这里不做过多赘述,可以搜到很多相关资料。本文提供python 使用OpenSSL解析证书的方法。

OpenSSL 解析certificate 证书

import OpenSSL
import OpenSSL.crypto
from OpenSSL.crypto import X509
from dateutil import parser


cp = OpenSSL.crypto

EC = cp.TYPE_EC  # 408
RSA = cp.TYPE_RSA  # 6
DH = cp.TYPE_DH  # 28
DSA = cp.TYPE_DSA  # 116


def analytical_certificate(cert_str=None, cert_paths=None):
    try:
        if cert_str:
            cert_content: X509 = OpenSSL.crypto.load_certificate(OpenSSL.crypto.FILETYPE_PEM, cert_str)
        elif cert_paths:
            cert_content: X509 = OpenSSL.crypto.load_certificate(OpenSSL.crypto.FILETYPE_PEM, open(cert_paths).read())
        cert_issuer = cert_content.get_issuer()
        cert_subject = cert_content.get_subject()
        extension_count = cert_content.get_extension_count()
        extension_ls = []
        for i in range(extension_count):
            extension = str(cert_content.get_extension(i))
            print(f"extension[{
     i}]:{
     extension}")
            extension_ls.append(extension)
        _cert_info = {
   
            "version": cert_content.get_version() + 1,
            "serial_number": hex(cert_content.get_serial_number()),
            "signature_algorithm": cert_content.get_signature_algorithm().decode("UTF-8"),
            "common_name": cert_issuer.commonName,
            "start_time": parser.parse(cert_content.get_notBefore().decode("UTF-8")).strftime('%Y%m%d%H%M%S'),
            "format_start_time": parser.parse(cert_content.get_notBefore().decode("UTF-8")).strftime('%Y-%m-%d %H:%M:%S'),
            "end_time": parser.parse(cert_content.get_notAfter().decode("UTF-8")).strftime('%Y%m%d%H%M%S'),
            "format_end_time":<
使用OpenSSL库或cryptography库可以方便地解析和处理X.509证书。下面是使用这两个库解析证书的简单示例: 1. 使用OpenSSL解析证书Python示例): ```python from OpenSSL import crypto # 读取证书文件 with open('certificate.pem', 'r') as f: cert_data = f.read() # 解析证书 cert = crypto.load_certificate(crypto.FILETYPE_PEM, cert_data) # 获取证书字段 subject = cert.get_subject() issuer = cert.get_issuer() not_before = cert.get_notBefore() not_after = cert.get_notAfter() # 打印证书信息 print("Subject: ", subject) print("Issuer: ", issuer) print("Valid from: ", not_before) print("Valid until: ", not_after) ``` 2. 使用cryptography库解析证书Python示例): ```python from cryptography import x509 from cryptography.hazmat.backends import default_backend # 读取证书文件 with open('certificate.pem', 'rb') as f: cert_data = f.read() # 解析证书 cert = x509.load_pem_x509_certificate(cert_data, default_backend()) # 获取证书字段 subject = cert.subject issuer = cert.issuer not_before = cert.not_valid_before not_after = cert.not_valid_after # 打印证书信息 print("Subject: ", subject) print("Issuer: ", issuer) print("Valid from: ", not_before) print("Valid until: ", not_after) ``` 注意,以上示例仅展示了如何使用这两个库解析证书的基本步骤和部分字段信息。你可以根据具体需求进一步探索这些库的功能和方法,以实现更复杂的证书处理任务。
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值