Go
Go
Examine SSL/TLS Server Certificate
See more Socket/SSL/TLS Examples
Demonstrates how an application can examine and check a server's SSL/TLS certificate.Chilkat Go Downloads
success := false
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
socket := chilkat.NewSocket()
// Connect to a server.
useTls := true
maxWaitMs := 2000
success = socket.Connect("www.intel.com",443,useTls,maxWaitMs)
if success == false {
fmt.Println(socket.LastErrorText())
socket.DisposeSocket()
return
}
// If we get here, the TLS connection ws made..
// In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
// Chilkat will keep it cached within the object that made the connection.
// Get the server's cert and examine a few things.
cert := chilkat.NewCert()
socket.GetServerCert(cert)
fmt.Println("Distinguished Name: ", cert.SubjectDN())
fmt.Println("Common Name: ", cert.SubjectCN())
fmt.Println("Issuer Distinguished Name: ", cert.IssuerDN())
fmt.Println("Issuer Common Name: ", cert.IssuerCN())
fmt.Println("Expired: ", cert.Expired())
fmt.Println("Revoked: ", cert.Revoked())
fmt.Println("Signature Verified: ", cert.SignatureVerified())
fmt.Println("Trusted Root: ", cert.TrustedRoot())
// Sample output:
// Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
// Common Name: *.intel.com
// Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
// Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
// Expired: False
// Revoked: False
// Signature Verified: True
// Trusted Root: True
socket.DisposeSocket()
cert.DisposeCert()