Sample code for 30+ languages & platforms
Tcl

Decrypt S/MIME using a Certificate with Private Key Access

See more MIME Examples

Loads a CMS/PKCS #7 encrypted S/MIME message and decrypts it back to the original MIME content.

DecryptUsingCert takes a single certificate that already has access to its associated private key, for example a certificate loaded from a PFX.

The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background. A public-only certificate is insufficient for decryption. The certificate passed to DecryptUsingCert must be linked to its private key, as happens when it is loaded from a PFX/P12 file.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

set mime [new_CkMime]

set success [CkMime_LoadMimeFile $mime "qa_data/encrypted.eml"]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    exit
}

#  Decrypt using a certificate that already provides access to its private key (for example loaded
#  from a PFX).  The only argument is the certificate.
set pfxPassword "myPfxPassword"
set cert [new_CkCert]

set success [CkCert_LoadPfxFile $cert "qa_data/recipient.pfx" $pfxPassword]
if {$success == 0} then {
    puts [CkCert_lastErrorText $cert]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

set success [CkMime_DecryptUsingCert $mime $cert]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

set body [CkMime_getBodyDecoded $mime]
if {[CkMime_get_LastMethodSuccess $mime] == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

puts "$body"

delete_CkMime $mime
delete_CkCert $cert