Sample code for 30+ languages & platforms
Tcl

Set a TLS Client Certificate from a Cert Object

See more Socket/SSL/TLS Examples

Demonstrates Socket.SetSslClientCert, which configures a certificate as the client certificate for subsequent TLS connections. The certificate must have access to its private key.

The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.

Background. Configure the client certificate before connecting. Use client certificates only when the server requests or requires client-certificate authentication (mutual TLS).

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

set socket [new_CkSocket]

#  The file path is relative to the application's current working directory.  An absolute path
#  may also be used.  Supply the path appropriate to your own environment.
#  The PFX password should come from a secure source rather than being hard-coded.
set pfxPassword "myPfxPassword"
set cert [new_CkCert]

set success [CkCert_LoadPfxFile $cert "qa_data/client.pfx" $pfxPassword]
if {$success == 0} then {
    puts [CkCert_lastErrorText $cert]
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

#  Configure the client certificate before connecting.  Use this only when the server requests or
#  requires client-certificate authentication (mutual TLS).
set success [CkSocket_SetSslClientCert $socket $cert]
if {$success == 0} then {
    puts [CkSocket_lastErrorText $socket]
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

set bTls 1
set maxWaitMs 5000
set success [CkSocket_Connect $socket "example.com" 5000 $bTls $maxWaitMs]
if {$success == 0} then {
    puts [CkSocket_lastErrorText $socket]
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

puts "Connected with mutual TLS."

delete_CkSocket $socket
delete_CkCert $cert