Tcl
Tcl
Add a PFX Source (BinData) for S/MIME Decryption
See more IMAP Examples
Demonstrates the Chilkat Imap.AddPfxSourceBd method, which adds PFX data held in a BinData as a source of certificates and private keys for S/MIME processing. The first argument is the BinData and the second is the PFX password. Call it once for each additional source.
Note: The certificate path is relative to the application's current working directory. Supply the path to your own certificate file.
Background: When downloading encrypted (S/MIME) email, Chilkat needs the recipient's private key to decrypt it. Adding one or more PFX sources gives Chilkat a pool of keys to search; the matching key is used automatically as messages are fetched. The
BinData form is handy when the PFX comes from memory — a database blob or a downloaded buffer — rather than a file on disk. On Windows and macOS the system certificate stores are also searched automatically.Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# Demonstrates the Imap.AddPfxSourceBd method, which adds PFX data (from a BinData) as a
# source of certificates and private keys for S/MIME decryption. The 1st argument is the
# BinData containing the PFX, and the 2nd is the PFX password.
set imap [new_CkImap]
CkImap_put_Ssl $imap 1
CkImap_put_Port $imap 993
set success [CkImap_Connect $imap "imap.example.com"]
if {$success == 0} then {
puts [CkImap_lastErrorText $imap]
delete_CkImap $imap
exit
}
set success [CkImap_Login $imap "user@example.com" "myPassword"]
if {$success == 0} then {
puts [CkImap_lastErrorText $imap]
delete_CkImap $imap
exit
}
# Load the PFX data into a BinData.
set bdPfx [new_CkBinData]
set success [CkBinData_LoadFile $bdPfx "qa_data/smime.pfx"]
if {$success == 0} then {
puts [CkBinData_lastErrorText $bdPfx]
delete_CkImap $imap
delete_CkBinData $bdPfx
exit
}
# The PFX password is not hard-coded in source. Insert code here to obtain it from an
# interactive prompt, environment variable, or a secrets vault.
# Add the PFX as a source for S/MIME certificates and private keys. Call once per source.
set success [CkImap_AddPfxSourceBd $imap $bdPfx $pfxPassword]
if {$success == 0} then {
puts [CkImap_lastErrorText $imap]
delete_CkImap $imap
delete_CkBinData $bdPfx
exit
}
# Messages downloaded after this are automatically decrypted when a matching key is found.
set success [CkImap_Disconnect $imap]
if {$success == 0} then {
puts [CkImap_lastErrorText $imap]
delete_CkImap $imap
delete_CkBinData $bdPfx
exit
}
delete_CkImap $imap
delete_CkBinData $bdPfx