Sample code for 30+ languages & platforms
C#

Enumerate Server-Advertised Acceptable Client CAs

See more Socket/SSL/TLS Examples

Demonstrates Socket.GetSslAcceptableClientCaDn, which returns a certificate-authority distinguished name advertised by a TLS server when it requests a client certificate.

Background. Valid indexes range from 0 through NumSslAcceptableClientCAs minus one. A client can use these names to select an appropriate client certificate.

Chilkat C# Downloads

C#
bool success = false;

Chilkat.Socket socket = new Chilkat.Socket();

//  Connect to the server using TLS.
bool bTls = true;
int maxWaitMs = 5000;
success = socket.Connect("example.com",5000,bTls,maxWaitMs);
if (success == false) {
    Debug.WriteLine(socket.LastErrorText);
    return;
}

//  After connecting to a server that requests a client certificate, enumerate the certificate-
//  authority distinguished names the server advertised as acceptable.
int numCAs = socket.NumSslAcceptableClientCAs;
int i;
for (i = 0; i <= numCAs - 1; i++) {
    string caDn = socket.GetSslAcceptableClientCaDn(i);
    if (socket.LastMethodSuccess == false) {
        Debug.WriteLine(socket.LastErrorText);
        return;
    }

    Debug.WriteLine(caDn);
}