Sample code for 30+ languages & platforms
Rust Requires Chilkat v11.0.0+

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat Rust Downloads

Rust

// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

let socket = chilkat::Socket::new();

// Connect to a server.
let use_tls = true;
let max_wait_ms = 2000;
if socket.connect("www.intel.com", 443, use_tls, max_wait_ms).is_err() {
    println!("{}", socket.last_error_text());
    return;
}

// If we get here, the TLS connection ws made..
// In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
// Chilkat will keep it cached within the object that made the connection.
// Get the server's cert and examine a few things.
let cert = chilkat::Cert::new();
let _ = socket.get_server_cert(&cert);

println!("Distinguished Name: {}", cert.subject_dn());
println!("Common Name: {}", cert.subject_cn());
println!("Issuer Distinguished Name: {}", cert.issuer_dn());
println!("Issuer Common Name: {}", cert.issuer_cn());

println!("Expired: {}", cert.expired());
println!("Revoked: {}", cert.revoked());
println!("Signature Verified: {}", cert.signature_verified());
println!("Trusted Root: {}", cert.trusted_root());

// Sample output:

// Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
// Common Name: *.intel.com
// Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
// Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
// Expired: False
// Revoked: False
// Signature Verified: True
// Trusted Root: True