Sample code for 30+ languages & platforms
Objective-C

Download and Trust the DigiCert Global Root CA

See more Certificates Examples

Demonstrates how to download a root certificate and trust it.

Chilkat Objective-C Downloads

Objective-C
#import <NSString.h>
#import <CkoHttp.h>
#import <CkoBinData.h>
#import <CkoCert.h>
#import <CkoTrustedRoots.h>

BOOL success = NO;

//  This requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

//  In this example, the URLs for the DigiCert root CA certs are available at this web page:
//  https://www.digicert.com/digicert-root-certificates.htm

//  This example downloads the "DigiCert Global Root G3"
//  Valid until: 15/Jan/2038
//  Serial #: 05:55:56:BC:F2:5E:A4:35:35:C3:A4:0F:D5:AB:45:72
//  Thumbprint: 7E04DE896A3E666D00E687D33FFAD93BE83D349E

NSString *certUrl = @"https://dl.cacerts.digicert.com/DigiCertGlobalRootG3.crt";

CkoHttp *http = [[CkoHttp alloc] init];
CkoBinData *bdCert = [[CkoBinData alloc] init];
success = [http DownloadBd: certUrl binData: bdCert];
if (success == NO) {
    NSLog(@"%@",http.LastErrorText);
    return;
}

//  Load it into a Chilkat cert object.
CkoCert *cert = [[CkoCert alloc] init];
success = [cert LoadFromBd: bdCert];
if (success == NO) {
    NSLog(@"%@",cert.LastErrorText);
    return;
}

//  Examine the common name,serial, and thumbprint:
NSLog(@"%@%@",@"CN: ",cert.SubjectCN);
NSLog(@"%@%@",@"Serial: ",cert.SerialNumber);
NSLog(@"%@%@",@"Thumbprint: ",cert.Sha1Thumbprint);

//  Output from the above:
//  CN: DigiCert Global Root G3
//  Serial: 055556BCF25EA43535C3A40FD5AB4572
//  Thumbprint: 7E04DE896A3E666D00E687D33FFAD93BE83D349E

//  If desired, the certificate can be saved to a local file so it does not need
//  to be downloaded from the website every time.  
NSString *certPath = @"qa_data/certs/DigiCertGlobalRootG3.crt";
success = [bdCert WriteFile: certPath];

//  To load the cert from a file...
success = [cert LoadFromFile: certPath];

//  Do the following to add the cert to the collection of trusted roots
//  for this application.  (Note:  The trust is not persisted.  Each time the
//  application runs, it should load the cert (from whatever source, whether it is
//  a file, a database,etc.) and do the following:
CkoTrustedRoots *troots = [[CkoTrustedRoots alloc] init];

[troots AddCert: cert];
[troots Activate];

NSLog(@"%@%@",cert.SubjectCN,@" is now trusted for this run of this application.");