Sample code for 30+ languages & platforms
Lianja

Set the Decryption Certificate for an Email

See more Email Object Examples

Demonstrates the Chilkat Email.SetDecryptCert method, which explicitly provides a certificate (with access to its private key) for decrypting a received encrypted email. Set the certificate before loading the encrypted message so Chilkat can decrypt it automatically. This example loads the certificate from a PFX, sets it, and then loads an encrypted email.

Background: Decrypting S/MIME email requires the recipient's private key. On Windows and macOS, Chilkat can find an installed certificate automatically, but when the key lives in a standalone PFX file you provide it explicitly with SetDecryptCert. A PFX (PKCS#12) bundles the certificate and its private key in one password-protected file. If the certificate and key are in separate files, use SetDecryptCert2 instead.

Chilkat Lianja Downloads

Lianja
llSuccess = .F.

//  Demonstrates the SetDecryptCert method, which explicitly provides a certificate (with
//  access to its private key) for decrypting a received encrypted email.  Set the cert
//  before loading the encrypted email so it can be decrypted automatically.

loEmail = createobject("CkEmail")

//  Load a certificate together with its private key from a PFX file.
loCert = createobject("CkCert")
llSuccess = loCert.LoadPfxFile("qa_data/certs/decryption.pfx","pfx_password")
if (llSuccess = .F.) then
    ? loCert.LastErrorText
    release loEmail
    release loCert
    return
endif

//  Provide the certificate to use for decryption.
llSuccess = loEmail.SetDecryptCert(loCert)
if (llSuccess = .F.) then
    ? loEmail.LastErrorText
    release loEmail
    release loCert
    return
endif

//  Load the encrypted email; Chilkat decrypts it using the certificate.
llSuccess = loEmail.LoadEml("qa_data/eml/encrypted.eml")
if (llSuccess = .F.) then
    ? loEmail.LastErrorText
    release loEmail
    release loCert
    return
endif

? "ReceivedEncrypted = " + str(loEmail.ReceivedEncrypted)
? "Decrypted = " + str(loEmail.Decrypted)

//  Note: Paths such as "qa_data/..." are relative local filesystem paths,
//  relative to the current working directory of the running application.


release loEmail
release loCert