Sample code for 30+ languages & platforms
Tcl

Encrypt MIME for a Recipient Certificate

See more MIME Examples

Demonstrates encrypting the current MIME entity for a single recipient using the Mime.Encrypt method. The entity is replaced with CMS/PKCS #7 encrypted S/MIME that only the holder of the recipient's private key can read.

The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background. S/MIME encryption uses the recipient's public certificate to protect a message so that only the matching private key can recover it. The recipient certificate must be RSA-based. Only the recipient's public key is needed to encrypt—the private key is required to decrypt.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

set mime [new_CkMime]

set success [CkMime_SetBodyFromPlainText $mime "This message will be encrypted."]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    exit
}

#  Load the recipient's certificate (public key only is sufficient for encrypting).
set cert [new_CkCert]

set success [CkCert_LoadFromFile $cert "qa_data/recipient.cer"]
if {$success == 0} then {
    puts [CkCert_lastErrorText $cert]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

#  Encrypt for the recipient.  The entity is replaced with CMS/PKCS #7 encrypted S/MIME that only
#  the holder of the recipient's private key can decrypt.  The certificate must be RSA-based.
set success [CkMime_Encrypt $mime $cert]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

set success [CkMime_SaveMime $mime "qa_output/encrypted.eml"]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

puts "Message encrypted."

delete_CkMime $mime
delete_CkCert $cert