Xbase++
Xbase++
Get Certificate CRL Distribution Points
See more Certificates Examples
Demonstrates how to get a certificate's CRL Distribution Points extension data (assuming it exists). In the vast majority of cases, there will be one CRL Distribution Point.Note: This example requires Chilkat v9.5.0.76 or greater.
Chilkat Xbase++ Downloads
LOCAL nSuccess
LOCAL oCert
LOCAL cExtensionXmlStr
LOCAL oXml
LOCAL oSbDistPoint
nSuccess := 0
oCert := CreateObject("Chilkat.Cert")
nSuccess := oCert:LoadFromFile("qa_data/certs/test_haswdt.cer")
IF (nSuccess != 1)
? oCert:LastErrorText
oCert:destroy()
RETURN
ENDIF
// Get the CRL Distribution Points extension, which is at OID 2.5.29.31
cExtensionXmlStr := oCert:GetExtensionAsXml("2.5.29.31")
IF (oCert:LastMethodSuccess == 0)
? "Certificate does not have the CDP extension."
oCert:destroy()
RETURN
ENDIF
oXml := CreateObject("Chilkat.Xml")
oXml:LoadXml(cExtensionXmlStr)
// See what we have..
? oXml:GetXml()
// We should get XML like this:
// <?xml version="1.0" encoding="utf-8" ?>
// <sequence>
// <sequence>
// <contextSpecific tag="0" constructed="1">
// <contextSpecific tag="0" constructed="1">
// <contextSpecific tag="6" constructed="0">aHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RPUlNBQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1
// cmVFbWFpbENBLmNybA==</contextSpecific>
// </contextSpecific>
// </contextSpecific>
// </sequence>
// </sequence>
//
// Assuming there is one CRL Distribution Point...
oSbDistPoint := CreateObject("Chilkat.StringBuilder")
nSuccess := oXml:GetChildContentSb("sequence|contextSpecific|contextSpecific|contextSpecific", oSbDistPoint)
IF (nSuccess == 1)
oSbDistPoint:Decode("base64", "utf-8")
? "CRL Distribution Point: " + oSbDistPoint:GetAsString()
ENDIF
// Sample output:
// CRL Distribution Point: http://crl.comodoca.com/COMODORSAClientAuthenticationandSecureEmailCA.crl
oCert:destroy()
oXml:destroy()
oSbDistPoint:destroy()