Sample code for 30+ languages & platforms
Delphi DLL Requires Chilkat v10.1.2+

Secure FTP with Client Certificate

See more FTP Examples

Chilkat FTP2 provides the ability to use a client certificate with secure FTP (implicit or explicit SSL/TLS). This example demonstrates how to load a certificate from a .pfx and use it as the client-side SSL cert. Note: Client-side certificates are only needed in situations where the server demands one.

Chilkat Delphi DLL Downloads

Delphi DLL
var
success: Boolean;
ftp: HCkFtp2;
certStore: HCkCertStore;
password: PWideChar;
jsonCN: HCkJsonObject;
cert: HCkCert;

begin
success := False;

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

ftp := CkFtp2_Create();

CkFtp2_putHostname(ftp,'ftp.example.com');
CkFtp2_putPort(ftp,21);
CkFtp2_putUsername(ftp,'test');
CkFtp2_putPassword(ftp,'test');

//  This example will use explict TLS/SSL.
//  Establish an explicit secure channel after connection
//  on the standard FTP port 21.
CkFtp2_putAuthTls(ftp,True);

//  The Ssl property is for establishing an implicit SSL connection
//  on port 990.  Because this example uses explicit SSL, it 
//  should remain 0.
CkFtp2_putSsl(ftp,False);

//  Load a certificate from a .pfx
//  A PFX may contain several certs, including the certificates
//  in a chain of authority.
certStore := CkCertStore_Create();

password := '***';
//  Load the certs from a PFX into an in-memory certificate store:
success := CkCertStore_LoadPfxFile(certStore,'chilkat.pfx',password);
if (success <> True) then
  begin
    Memo1.Lines.Add(CkCertStore__lastErrorText(certStore));
    Exit;
  end;

//  Find the desired certificate.
jsonCN := CkJsonObject_Create();
CkJsonObject_UpdateString(jsonCN,'CN','cert common name');

cert := CkCert_Create();
success := CkCertStore_FindCert(certStore,jsonCN,cert);
if (success = False) then
  begin
    Memo1.Lines.Add('Certificate not found!');
    Exit;
  end;

//  Use this certificate for our secure (SSL/TLS) connection:
success := CkFtp2_SetSslClientCert(ftp,cert);

//  Connect and login to the FTP server.  The connection is 
//  made secure because of the AuthTls setting.
success := CkFtp2_Connect(ftp);
if (success <> True) then
  begin
    Memo1.Lines.Add(CkFtp2__lastErrorText(ftp));
    Exit;
  end
else
  begin
    //  LastErrorText contains information even when
    //  successful. This allows you to visually verify
    //  that the secure connection actually occurred.
    Memo1.Lines.Add(CkFtp2__lastErrorText(ftp));
  end;

Memo1.Lines.Add('Secure FTP Channel Established!');

//  Do whatever you're doing to do ...
//  upload files, download files, etc...

//  .....
//  .....

success := CkFtp2_Disconnect(ftp);

CkFtp2_Dispose(ftp);
CkCertStore_Dispose(certStore);
CkJsonObject_Dispose(jsonCN);
CkCert_Dispose(cert);