Sample code for 30+ languages & platforms
Pascal (Lazarus/Delphi)

SFTP Authenticate with a SecureString Password

See more SFTP Examples

Demonstrates the Chilkat SFtp.AuthenticateSecPw method, which authenticates using SecureString login and password objects. The first argument is the login and the second is the password.

Background: A SecureString keeps the credential encrypted in memory, reducing the chance of a plaintext password lingering in the process. The behavior otherwise matches AuthenticatePw; only the credential handling is more protective. Populate the SecureString from a value obtained at runtime, not a hard-coded literal.

Chilkat Pascal (Lazarus/Delphi) Downloads

Pascal (Lazarus/Delphi)
program ChilkatDemo;

// Demonstrates using the Chilkat Pascal wrapper via the C bridge DLL.
// Builds as a console application under Lazarus (FPC) or Delphi.

{$IFDEF FPC}
  {$MODE DELPHI}
{$ENDIF}
{$APPTYPE CONSOLE}

uses
  {$IFDEF UNIX}
  cthreads,
  {$ENDIF}
  SysUtils,
  CkDllLoader,
  Chilkat.SFtp,
  Chilkat.SecureString;

// ---------------------------------------------------------------------------

procedure RunDemo;
var
  success: Boolean;
  sftp: TSFtp;
  port: Integer;
  password: string;
  secureLogin: TSecureString;
  securePassword: TSecureString;

begin
  success := False;

  //  Demonstrates the SFtp.AuthenticateSecPw method, which authenticates using SecureString login
  //  and password objects.  The 1st argument is the login and the 2nd is the password.

  sftp := TSFtp.Create;

  //  Step 1: Connect the SSH transport.  Port 22 is the usual port.
  port := 22;
  success := sftp.Connect('sftp.example.com',port);
  if (success = False) then
    begin
      WriteLn(sftp.LastErrorText);
      Exit;
    end;

  //  Normally you would not hard-code the password in source.  You should instead obtain it
  //  from an interactive prompt, environment variable, or a secrets vault.
  password := 'mySshPassword';

  //  Place the login and password into SecureString objects.
  secureLogin := TSecureString.Create;
  secureLogin.Append('mySshLogin');
  securePassword := TSecureString.Create;
  securePassword.Append(password);

  success := sftp.AuthenticateSecPw(secureLogin,securePassword);
  if (success = False) then
    begin
      WriteLn(sftp.LastErrorText);
      Exit;
    end;

  //  Step 3: Open the SFTP subsystem.  This must be done after authentication and before any
  //  file or directory operations.
  success := sftp.InitializeSftp();
  if (success = False) then
    begin
      WriteLn(sftp.LastErrorText);
      Exit;
    end;

  WriteLn('Authenticated with secure strings.');

  sftp.Disconnect();


  sftp.Free;
  secureLogin.Free;
  securePassword.Free;

end;

// ---------------------------------------------------------------------------

begin

  try
    RunDemo;
  except
    on E: Exception do
      WriteLn('Unhandled exception: ', E.ClassName, ': ', E.Message);
  end;

  WriteLn;
  {$IFDEF MSWINDOWS}
  WriteLn('Press Enter to exit...');
  ReadLn;
  {$ENDIF}
end.