Xbase++ Requires Chilkat v11.0.0+
Xbase++
Examine SSL/TLS Server Certificate
See more Socket/SSL/TLS Examples
Demonstrates how an application can examine and check a server's SSL/TLS certificate.Chilkat Xbase++ Downloads
LOCAL nSuccess
LOCAL oSocket
LOCAL nUseTls
LOCAL nMaxWaitMs
LOCAL oCert
nSuccess := 0
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
oSocket := CreateObject("Chilkat.Socket")
// Connect to a server.
nUseTls := 1
nMaxWaitMs := 2000
nSuccess := oSocket:Connect("www.intel.com", 443, nUseTls, nMaxWaitMs)
IF (nSuccess == 0)
? oSocket:LastErrorText
oSocket:destroy()
RETURN
ENDIF
// If we get here, the TLS connection ws made..
// In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
// Chilkat will keep it cached within the object that made the connection.
// Get the server's cert and examine a few things.
oCert := CreateObject("Chilkat.Cert")
oSocket:GetServerCert(oCert)
? "Distinguished Name: " + oCert:SubjectDN
? "Common Name: " + oCert:SubjectCN
? "Issuer Distinguished Name: " + oCert:IssuerDN
? "Issuer Common Name: " + oCert:IssuerCN
? "Expired: " + Str(oCert:Expired)
? "Revoked: " + Str(oCert:Revoked)
? "Signature Verified: " + Str(oCert:SignatureVerified)
? "Trusted Root: " + Str(oCert:TrustedRoot)
// Sample output:
// Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
// Common Name: *.intel.com
// Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
// Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
// Expired: False
// Revoked: False
// Signature Verified: True
// Trusted Root: True
oSocket:destroy()
oCert:destroy()