Sample code for 30+ languages & platforms
Java

Get the Server Certificate, Certificate Chain, and Root CA Certificate

See more HTTP Examples

Demonstrates how to get the HTTP server certificate, its certificate chain, and the root CA certificate.

Chilkat Java Downloads

Java
import com.chilkatsoft.*;

public class ChilkatExample {

  static {
    try {
        System.loadLibrary("chilkat");
    } catch (UnsatisfiedLinkError e) {
      System.err.println("Native code library failed to load.\n" + e);
      System.exit(1);
    }
  }

  public static void main(String argv[])
  {
    boolean success = false;

    // This example assumes the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    CkHttp http = new CkHttp();

    // We're getting the SSL/TLS certificate, so make sure to connect to the SSL/TLS port (443).
    CkCert sslCert = new CkCert();
    success = http.GetServerCert("apple.com",443,sslCert);
    if (success == false) {
        System.out.println(http.lastErrorText());
        return;
        }

    CkCertChain certChain = new CkCertChain();
    success = sslCert.BuildCertChain(certChain);
    if (success == false) {
        System.out.println(sslCert.lastErrorText());
        return;
        }

    CkCert cert = new CkCert();
    int i = 0;
    int numCerts = certChain.get_NumCerts();
    while (i < numCerts) {
        certChain.CertAt(i,cert);
        System.out.println("SubjectDN " + i + ": " + cert.subjectDN());
        System.out.println("IssuerDN " + i + ": " + cert.issuerDN());
        i = i+1;
        }

    // If the certificate chain reaches the root CA cert, then the last cert in the chain
    // is the root CA cert.
    if (certChain.get_ReachesRoot() == true) {
        CkCert caCert = new CkCert();
        certChain.CertAt(numCerts - 1,caCert);
        System.out.println("CA Root Cert: " + caCert.subjectDN());
        }
  }
}