Objective-C
Objective-C
Set a TLS Client Certificate for IMAP
See more IMAP Examples
Demonstrates the Chilkat Imap.SetSslClientCert method, which supplies a client certificate for TLS client-certificate authentication. The only argument is a Cert object that must provide access to its private key. Call it before connecting. This example loads the certificate from a PFX file.
Note: The certificate path is relative to the application's current working directory. Supply the path to your own certificate file.
Background: Most IMAP servers authenticate with a username and password only. A few high-security deployments additionally require mutual TLS, where the client presents its own certificate during the handshake. Because that happens as part of connecting, the certificate must be set before
Connect — setting it afterward has no effect on the already-established connection.Chilkat Objective-C Downloads
#import <CkoImap.h>
#import <NSString.h>
#import <CkoCert.h>
BOOL success = NO;
// Demonstrates the Imap.SetSslClientCert method, which supplies a client certificate for TLS
// client-certificate authentication. The only argument is a Cert object. It must be called
// before connecting.
CkoImap *imap = [[CkoImap alloc] init];
imap.Ssl = YES;
imap.Port = [NSNumber numberWithInt:993];
// The PFX password is not hard-coded in source. Insert code here to obtain it from an
// interactive prompt, environment variable, or a secrets vault.
NSString *pfxPassword = 0;
// Load the client certificate (and its private key) from a PFX file.
CkoCert *cert = [[CkoCert alloc] init];
success = [cert LoadPfxFile: @"qa_data/client.pfx" password: pfxPassword];
if (success == NO) {
NSLog(@"%@",cert.LastErrorText);
return;
}
// Provide the client certificate BEFORE connecting.
success = [imap SetSslClientCert: cert];
if (success == NO) {
NSLog(@"%@",imap.LastErrorText);
return;
}
success = [imap Connect: @"imap.example.com"];
if (success == NO) {
NSLog(@"%@",imap.LastErrorText);
return;
}
success = [imap Login: @"user@example.com" password: @"myPassword"];
if (success == NO) {
NSLog(@"%@",imap.LastErrorText);
return;
}
success = [imap Disconnect];
if (success == NO) {
NSLog(@"%@",imap.LastErrorText);
return;
}