C
C
Set an FTPS Client Certificate from PEM
See more FTP Examples
Demonstrates the Chilkat Ftp2.SetSslClientCertPem method, which configures a client certificate and private key from PEM. The first argument may be the PEM text or a PEM file path, and the second is the private-key password (empty when the key is not encrypted).
Note: The local paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.
Background: This is the PEM-based form of setting the mutual-TLS client certificate — convenient when the certificate and key already live in a
.pem file, the common format from OpenSSH and Unix tooling. Use SetSslClientCertPfx instead for a PKCS#12 .pfx/.p12 bundle. As with any client certificate, set it before connecting.Chilkat C Downloads
#include <C_CkFtp2.h>
void ChilkatSample(void)
{
BOOL success;
HCkFtp2 ftp;
const char *pemPassword;
success = FALSE;
// Demonstrates the Ftp2.SetSslClientCertPem method, which configures a client certificate and
// private key from PEM. The 1st argument is the PEM text or a PEM file path, and the 2nd is the
// private-key password (empty when the key is not encrypted).
ftp = CkFtp2_Create();
CkFtp2_putHostname(ftp,"ftp.example.com");
CkFtp2_putUsername(ftp,"myFtpLogin");
// Normally you would not hard-code the password in source. You should instead obtain it
// from an interactive prompt, environment variable, or a secrets vault.
CkFtp2_putPassword(ftp,"myPassword");
// Use explicit FTPS (AUTH TLS) on the standard FTP port.
CkFtp2_putAuthTls(ftp,TRUE);
// Provide the PEM client certificate before connecting. The password should come from a secure
// source rather than being hard-coded.
pemPassword = "myPemPassword";
success = CkFtp2_SetSslClientCertPem(ftp,"qa_data/client.pem",pemPassword);
if (success == FALSE) {
printf("%s\n",CkFtp2_lastErrorText(ftp));
CkFtp2_Dispose(ftp);
return;
}
success = CkFtp2_Connect(ftp);
if (success == FALSE) {
printf("%s\n",CkFtp2_lastErrorText(ftp));
CkFtp2_Dispose(ftp);
return;
}
printf("Connected with a PEM client certificate.\n");
success = CkFtp2_Disconnect(ftp);
if (success == FALSE) {
printf("%s\n",CkFtp2_lastErrorText(ftp));
CkFtp2_Dispose(ftp);
return;
}
CkFtp2_Dispose(ftp);
}