Pascal (Lazarus/Delphi)
Pascal (Lazarus/Delphi)
Set a TLS Client Certificate for IMAP
See more IMAP Examples
Demonstrates the Chilkat Imap.SetSslClientCert method, which supplies a client certificate for TLS client-certificate authentication. The only argument is a Cert object that must provide access to its private key. Call it before connecting. This example loads the certificate from a PFX file.
Note: The certificate path is relative to the application's current working directory. Supply the path to your own certificate file.
Background: Most IMAP servers authenticate with a username and password only. A few high-security deployments additionally require mutual TLS, where the client presents its own certificate during the handshake. Because that happens as part of connecting, the certificate must be set before
Connect — setting it afterward has no effect on the already-established connection.Chilkat Pascal (Lazarus/Delphi) Downloads
program ChilkatDemo;
// Demonstrates using the Chilkat Pascal wrapper via the C bridge DLL.
// Builds as a console application under Lazarus (FPC) or Delphi.
{$IFDEF FPC}
{$MODE DELPHI}
{$ENDIF}
{$APPTYPE CONSOLE}
uses
{$IFDEF UNIX}
cthreads,
{$ENDIF}
SysUtils,
CkDllLoader,
Chilkat.Imap,
Chilkat.Cert;
// ---------------------------------------------------------------------------
procedure RunDemo;
var
success: Boolean;
imap: TImap;
pfxPassword: string;
cert: TCert;
begin
success := False;
// Demonstrates the Imap.SetSslClientCert method, which supplies a client certificate for TLS
// client-certificate authentication. The only argument is a Cert object. It must be called
// before connecting.
imap := TImap.Create;
imap.Ssl := True;
imap.Port := 993;
// The PFX password is not hard-coded in source. Insert code here to obtain it from an
// interactive prompt, environment variable, or a secrets vault.
// Load the client certificate (and its private key) from a PFX file.
cert := TCert.Create;
success := cert.LoadPfxFile('qa_data/client.pfx',pfxPassword);
if (success = False) then
begin
WriteLn(cert.LastErrorText);
Exit;
end;
// Provide the client certificate BEFORE connecting.
success := imap.SetSslClientCert(cert);
if (success = False) then
begin
WriteLn(imap.LastErrorText);
Exit;
end;
success := imap.Connect('imap.example.com');
if (success = False) then
begin
WriteLn(imap.LastErrorText);
Exit;
end;
success := imap.Login('user@example.com','myPassword');
if (success = False) then
begin
WriteLn(imap.LastErrorText);
Exit;
end;
success := imap.Disconnect();
if (success = False) then
begin
WriteLn(imap.LastErrorText);
Exit;
end;
imap.Free;
cert.Free;
end;
// ---------------------------------------------------------------------------
begin
try
RunDemo;
except
on E: Exception do
WriteLn('Unhandled exception: ', E.ClassName, ': ', E.Message);
end;
WriteLn;
{$IFDEF MSWINDOWS}
WriteLn('Press Enter to exit...');
ReadLn;
{$ENDIF}
end.