Delphi ActiveX
Delphi ActiveX
ScMinidriver - Import a Certificate to IDPrime MD T=0 Smart Card
See more ScMinidriver Examples
Demonstrates how to import a certificate and its private key to a key container on an ID Prime MD T=0 smartcard.Note: Requires Chilkat v9.5.0.88 or later. This example only runs on Windows because ScMinidriver is a Windows-only class.
Chilkat Delphi ActiveX Downloads
uses
Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics,
Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, Chilkat_TLB;
...
procedure TForm1.Button1Click(Sender: TObject);
var
success: Integer;
scmd: TChilkatScMinidriver;
readerName: WideString;
pinId: WideString;
retval: Integer;
cert: TChilkatCert;
password: WideString;
containerIndex: Integer;
keySpec: WideString;
begin
success := 0;
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
scmd := TChilkatScMinidriver.Create(Self);
// Reader names (smart card readers or USB tokens) can be discovered
// via List Readers or Find Smart Cards
readerName := 'SCM Microsystems Inc. SCR33x USB Smart Card Reader 0';
success := scmd.AcquireContext(readerName);
if (success = 0) then
begin
Memo1.Lines.Add(scmd.LastErrorText);
Exit;
end;
// If successful, the name of the currently inserted smart card is available:
Memo1.Lines.Add('Card name: ' + scmd.CardName);
// The IDPRime MD smart card has 4 different PIN roles:
// "user" -- Primary Card PIN
// "admin" -- Administrator PIN
// "3" -- Digital Signature PIN
// "4" -- Unblock only PIN (PUK)
// To import a certificate to the "IDPrime MD T=0" smart card, we must first PIN authenticate using "user", and then also PIN authenticate using "3" (the Digital Signature PIN)
pinId := 'user';
// (Of course, use your PIN which may be different than "0000")
retval := scmd.PinAuthenticate(pinId,'0000');
if (retval <> 0) then
begin
Memo1.Lines.Add('PIN Authentication failed.');
scmd.DeleteContext();
Exit;
end;
cert := TChilkatCert.Create(Self);
// Load the cert + private key from a .p12/.pfx
// We got this .p12 from https://badssl.com/download/
password := 'badssl.com';
success := cert.LoadPfxFile('qa_data/pfx/badssl.com-client.p12',password);
if (success = 0) then
begin
Memo1.Lines.Add(cert.LastErrorText);
scmd.DeleteContext();
Exit;
end;
// Also authenticate using "3", the digital signature PIN.
// (Of course, use your PIN which may be different than "12345678")
retval := scmd.PinAuthenticate('3','12345678');
if (retval <> 0) then
begin
Memo1.Lines.Add('PIN Authentication failed.');
scmd.DeleteContext();
Exit;
end;
// Let's import this certificate as the "signature" key/cert in key container #6.
containerIndex := 6;
keySpec := 'sig';
// Note the last argument (the pin ID) is "3". This is the required PIN ID for the IDPrime MD T=0 smart card.
success := scmd.ImportCert(cert.ControlInterface,containerIndex,keySpec,'3');
if (success = 0) then
begin
Memo1.Lines.Add(scmd.LastErrorText);
end
else
begin
Memo1.Lines.Add('Successfully imported the cert + private key onto the smart card.');
end;
// Delete the context when finished with the card.
success := scmd.DeleteContext();
if (success = 0) then
begin
Memo1.Lines.Add(scmd.LastErrorText);
end;
end;