Sample code for 30+ languages & platforms
Go

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat Go Downloads

Go
    success := false

    // This example assumes the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    socket := chilkat.NewSocket()

    // Connect to a server.
    useTls := true
    maxWaitMs := 2000
    success = socket.Connect("www.intel.com",443,useTls,maxWaitMs)
    if success == false {
        fmt.Println(socket.LastErrorText())
        socket.DisposeSocket()
        return
    }

    // If we get here, the TLS connection ws made..
    // In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
    // Chilkat will keep it cached within the object that made the connection.
    // Get the server's cert and examine a few things.
    cert := chilkat.NewCert()
    socket.GetServerCert(cert)

    fmt.Println("Distinguished Name: ", cert.SubjectDN())
    fmt.Println("Common Name: ", cert.SubjectCN())
    fmt.Println("Issuer Distinguished Name: ", cert.IssuerDN())
    fmt.Println("Issuer Common Name: ", cert.IssuerCN())

    fmt.Println("Expired: ", cert.Expired())
    fmt.Println("Revoked: ", cert.Revoked())
    fmt.Println("Signature Verified: ", cert.SignatureVerified())
    fmt.Println("Trusted Root: ", cert.TrustedRoot())

    // Sample output:

    // Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
    // Common Name: *.intel.com
    // Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
    // Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
    // Expired: False
    // Revoked: False
    // Signature Verified: True
    // Trusted Root: True

    socket.DisposeSocket()
    cert.DisposeCert()