Sample code for 30+ languages & platforms
Xbase++

Set the Decryption Certificate for an Email

See more Email Object Examples

Demonstrates the Chilkat Email.SetDecryptCert method, which explicitly provides a certificate (with access to its private key) for decrypting a received encrypted email. Set the certificate before loading the encrypted message so Chilkat can decrypt it automatically. This example loads the certificate from a PFX, sets it, and then loads an encrypted email.

Background: Decrypting S/MIME email requires the recipient's private key. On Windows and macOS, Chilkat can find an installed certificate automatically, but when the key lives in a standalone PFX file you provide it explicitly with SetDecryptCert. A PFX (PKCS#12) bundles the certificate and its private key in one password-protected file. If the certificate and key are in separate files, use SetDecryptCert2 instead.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oEmail
LOCAL oCert

nSuccess := 0

//  Demonstrates the SetDecryptCert method, which explicitly provides a certificate (with
//  access to its private key) for decrypting a received encrypted email.  Set the cert
//  before loading the encrypted email so it can be decrypted automatically.

oEmail := CreateObject("Chilkat.Email")

//  Load a certificate together with its private key from a PFX file.
oCert := CreateObject("Chilkat.Cert")
nSuccess := oCert:LoadPfxFile("qa_data/certs/decryption.pfx", "pfx_password")
IF (nSuccess == 0)
    ? oCert:LastErrorText
    oEmail:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Provide the certificate to use for decryption.
nSuccess := oEmail:SetDecryptCert(oCert)
IF (nSuccess == 0)
    ? oEmail:LastErrorText
    oEmail:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Load the encrypted email; Chilkat decrypts it using the certificate.
nSuccess := oEmail:LoadEml("qa_data/eml/encrypted.eml")
IF (nSuccess == 0)
    ? oEmail:LastErrorText
    oEmail:destroy()
    oCert:destroy()
    RETURN
ENDIF

? "ReceivedEncrypted = " + Str(oEmail:ReceivedEncrypted)
? "Decrypted = " + Str(oEmail:Decrypted)

//  Note: Paths such as "qa_data/..." are relative local filesystem paths,
//  relative to the current working directory of the running application.

oEmail:destroy()
oCert:destroy()