Sample code for 30+ languages & platforms
Pascal (Lazarus/Delphi)

Set an FTPS Client Certificate from a PFX File

See more FTP Examples

Demonstrates the Chilkat Ftp2.SetSslClientCertPfx method, which loads a client certificate and private key from a PFX/P12 file. The first argument is the file path and the second is its password.

Note: The local paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: A PFX (PKCS #12) file bundles a certificate with its private key in one password-protected file — the format Windows and many corporate PKI tools export. This is the counterpart to SetSslClientCertPem for mutual-TLS authentication when your credentials are packaged as a single .pfx. Set it before connecting.

Chilkat Pascal (Lazarus/Delphi) Downloads

Pascal (Lazarus/Delphi)
program ChilkatDemo;

// Demonstrates using the Chilkat Pascal wrapper via the C bridge DLL.
// Builds as a console application under Lazarus (FPC) or Delphi.

{$IFDEF FPC}
  {$MODE DELPHI}
{$ENDIF}
{$APPTYPE CONSOLE}

uses
  {$IFDEF UNIX}
  cthreads,
  {$ENDIF}
  SysUtils,
  CkDllLoader,
  Chilkat.Ftp2;

// ---------------------------------------------------------------------------

procedure RunDemo;
var
  success: Boolean;
  ftp: TFtp2;
  pfxPassword: string;

begin
  success := False;

  //  Demonstrates the Ftp2.SetSslClientCertPfx method, which loads a client certificate and private
  //  key from a PFX/P12 file.  The 1st argument is the PFX file path and the 2nd is its password.

  ftp := TFtp2.Create;

  ftp.Hostname := 'ftp.example.com';
  ftp.Username := 'myFtpLogin';

  //  Normally you would not hard-code the password in source.  You should instead obtain it
  //  from an interactive prompt, environment variable, or a secrets vault.
  ftp.Password := 'myPassword';

  //  Use explicit FTPS (AUTH TLS) on the standard FTP port.
  ftp.AuthTls := True;

  //  Provide the PFX client certificate before connecting.  The password should come from a secure
  //  source rather than being hard-coded.
  pfxPassword := 'myPfxPassword';
  success := ftp.SetSslClientCertPfx('qa_data/client.pfx',pfxPassword);
  if (success = False) then
    begin
      WriteLn(ftp.LastErrorText);
      Exit;
    end;

  success := ftp.Connect();
  if (success = False) then
    begin
      WriteLn(ftp.LastErrorText);
      Exit;
    end;
  WriteLn('Connected with a PFX client certificate.');

  success := ftp.Disconnect();
  if (success = False) then
    begin
      WriteLn(ftp.LastErrorText);
      Exit;
    end;


  ftp.Free;

end;

// ---------------------------------------------------------------------------

begin

  try
    RunDemo;
  except
    on E: Exception do
      WriteLn('Unhandled exception: ', E.ClassName, ': ', E.Message);
  end;

  WriteLn;
  {$IFDEF MSWINDOWS}
  WriteLn('Press Enter to exit...');
  ReadLn;
  {$ENDIF}
end.