summaryrefslogtreecommitdiff
path: root/vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go
diff options
context:
space:
mode:
Diffstat (limited to 'vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go')
-rw-r--r--vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go38
1 files changed, 38 insertions, 0 deletions
diff --git a/vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go b/vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go
new file mode 100644
index 000000000..1375063c1
--- /dev/null
+++ b/vendor/k8s.io/kubernetes/pkg/apis/certificates/v1beta1/helpers.go
@@ -0,0 +1,38 @@
+/*
+Copyright 2016 The Kubernetes Authors.
+
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+
+ http://www.apache.org/licenses/LICENSE-2.0
+
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+See the License for the specific language governing permissions and
+limitations under the License.
+*/
+
+package v1beta1
+
+import (
+ "crypto/x509"
+ "encoding/pem"
+ "errors"
+)
+
+// ParseCSR extracts the CSR from the API object and decodes it.
+func ParseCSR(obj *CertificateSigningRequest) (*x509.CertificateRequest, error) {
+ // extract PEM from request object
+ pemBytes := obj.Spec.Request
+ block, _ := pem.Decode(pemBytes)
+ if block == nil || block.Type != "CERTIFICATE REQUEST" {
+ return nil, errors.New("PEM block type must be CERTIFICATE REQUEST")
+ }
+ csr, err := x509.ParseCertificateRequest(block.Bytes)
+ if err != nil {
+ return nil, err
+ }
+ return csr, nil
+}