Tcl
Tcl
Set an FTPS Client Certificate from a PFX File
See more FTP Examples
Demonstrates the Chilkat Ftp2.SetSslClientCertPfx method, which loads a client certificate and private key from a PFX/P12 file. The first argument is the file path and the second is its password.
Note: The local paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.
Background: A PFX (PKCS #12) file bundles a certificate with its private key in one password-protected file — the format Windows and many corporate PKI tools export. This is the counterpart to
SetSslClientCertPem for mutual-TLS authentication when your credentials are packaged as a single .pfx. Set it before connecting.Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# Demonstrates the Ftp2.SetSslClientCertPfx method, which loads a client certificate and private
# key from a PFX/P12 file. The 1st argument is the PFX file path and the 2nd is its password.
set ftp [new_CkFtp2]
CkFtp2_put_Hostname $ftp "ftp.example.com"
CkFtp2_put_Username $ftp "myFtpLogin"
# Normally you would not hard-code the password in source. You should instead obtain it
# from an interactive prompt, environment variable, or a secrets vault.
CkFtp2_put_Password $ftp "myPassword"
# Use explicit FTPS (AUTH TLS) on the standard FTP port.
CkFtp2_put_AuthTls $ftp 1
# Provide the PFX client certificate before connecting. The password should come from a secure
# source rather than being hard-coded.
set pfxPassword "myPfxPassword"
set success [CkFtp2_SetSslClientCertPfx $ftp "qa_data/client.pfx" $pfxPassword]
if {$success == 0} then {
puts [CkFtp2_lastErrorText $ftp]
delete_CkFtp2 $ftp
exit
}
set success [CkFtp2_Connect $ftp]
if {$success == 0} then {
puts [CkFtp2_lastErrorText $ftp]
delete_CkFtp2 $ftp
exit
}
puts "Connected with a PFX client certificate."
set success [CkFtp2_Disconnect $ftp]
if {$success == 0} then {
puts [CkFtp2_lastErrorText $ftp]
delete_CkFtp2 $ftp
exit
}
delete_CkFtp2 $ftp