Sample code for 30+ languages & platforms
PHP Extension

Enumerate Server-Advertised Acceptable Client CAs

See more Socket/SSL/TLS Examples

Demonstrates Socket.GetSslAcceptableClientCaDn, which returns a certificate-authority distinguished name advertised by a TLS server when it requests a client certificate.

Background. Valid indexes range from 0 through NumSslAcceptableClientCAs minus one. A client can use these names to select an appropriate client certificate.

Chilkat PHP Extension Downloads

PHP Extension
<?php

include("chilkat.php");

$success = false;

$socket = new CkSocket();

//  Connect to the server using TLS.
$bTls = true;
$maxWaitMs = 5000;
$success = $socket->Connect('example.com',5000,$bTls,$maxWaitMs);
if ($success == false) {
    print $socket->lastErrorText() . "\n";
    exit;
}

//  After connecting to a server that requests a client certificate, enumerate the certificate-
//  authority distinguished names the server advertised as acceptable.
$numCAs = $socket->get_NumSslAcceptableClientCAs();

for ($i = 0; $i <= $numCAs - 1; $i++) {
    $caDn = $socket->getSslAcceptableClientCaDn($i);
    if ($socket->get_LastMethodSuccess() == false) {
        print $socket->lastErrorText() . "\n";
        exit;
    }

    print $caDn . "\n";
}


?>