Sample code for 30+ languages & platforms
Tcl

Add a PFX Source (BinData) for S/MIME Decryption

See more IMAP Examples

Demonstrates the Chilkat Imap.AddPfxSourceBd method, which adds PFX data held in a BinData as a source of certificates and private keys for S/MIME processing. The first argument is the BinData and the second is the PFX password. Call it once for each additional source.

Note: The certificate path is relative to the application's current working directory. Supply the path to your own certificate file.

Background: When downloading encrypted (S/MIME) email, Chilkat needs the recipient's private key to decrypt it. Adding one or more PFX sources gives Chilkat a pool of keys to search; the matching key is used automatically as messages are fetched. The BinData form is handy when the PFX comes from memory — a database blob or a downloaded buffer — rather than a file on disk. On Windows and macOS the system certificate stores are also searched automatically.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

#  Demonstrates the Imap.AddPfxSourceBd method, which adds PFX data (from a BinData) as a
#  source of certificates and private keys for S/MIME decryption.  The 1st argument is the
#  BinData containing the PFX, and the 2nd is the PFX password.

set imap [new_CkImap]

CkImap_put_Ssl $imap 1
CkImap_put_Port $imap 993

set success [CkImap_Connect $imap "imap.example.com"]
if {$success == 0} then {
    puts [CkImap_lastErrorText $imap]
    delete_CkImap $imap
    exit
}

set success [CkImap_Login $imap "user@example.com" "myPassword"]
if {$success == 0} then {
    puts [CkImap_lastErrorText $imap]
    delete_CkImap $imap
    exit
}

#  Load the PFX data into a BinData.
set bdPfx [new_CkBinData]

set success [CkBinData_LoadFile $bdPfx "qa_data/smime.pfx"]
if {$success == 0} then {
    puts [CkBinData_lastErrorText $bdPfx]
    delete_CkImap $imap
    delete_CkBinData $bdPfx
    exit
}

#  The PFX password is not hard-coded in source.  Insert code here to obtain it from an
#  interactive prompt, environment variable, or a secrets vault.

#  Add the PFX as a source for S/MIME certificates and private keys.  Call once per source.
set success [CkImap_AddPfxSourceBd $imap $bdPfx $pfxPassword]
if {$success == 0} then {
    puts [CkImap_lastErrorText $imap]
    delete_CkImap $imap
    delete_CkBinData $bdPfx
    exit
}

#  Messages downloaded after this are automatically decrypted when a matching key is found.

set success [CkImap_Disconnect $imap]
if {$success == 0} then {
    puts [CkImap_lastErrorText $imap]
    delete_CkImap $imap
    delete_CkBinData $bdPfx
    exit
}


delete_CkImap $imap
delete_CkBinData $bdPfx