CkPython
CkPython
Configure a Socket for Server-Side TLS
See more Socket/SSL/TLS Examples
Demonstrates Socket.InitSslServer, which configures the object for server-side TLS using a server certificate that has access to its private key, then listens for and accepts a TLS connection.
The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.
Background. A TLS listener presents the configured server certificate during the handshake. When client certificates are required, acceptable CA distinguished names are added before InitSslServer.
Chilkat CkPython Downloads
import sys
import chilkat
success = False
socket = chilkat.CkSocket()
# The file path is relative to the application's current working directory. An absolute path
# may also be used. Supply the path appropriate to your own environment.
# The PFX password should come from a secure source rather than being hard-coded.
pfxPassword = "myPfxPassword"
cert = chilkat.CkCert()
success = cert.LoadPfxFile("qa_data/server.pfx",pfxPassword)
if (success == False):
print(cert.lastErrorText())
sys.exit()
# Configure this object for server-side TLS using the certificate. The certificate must have
# access to its corresponding private key.
success = socket.InitSslServer(cert)
if (success == False):
print(socket.lastErrorText())
sys.exit()
# Listen for connections. Accepted connections will use TLS.
success = socket.BindAndListen(5000,25)
if (success == False):
print(socket.lastErrorText())
sys.exit()
connectedSock = chilkat.CkSocket()
success = socket.AcceptNext(20000,connectedSock)
if (success == False):
print(socket.lastErrorText())
sys.exit()
print("Accepted a TLS client connection.")