Xbase++
Xbase++
Require SSL Server Certificate Domain Match
See more HTTP Examples
Demonstrates how to require that the SSL server certificate's domain matches the intended domain.Chilkat Xbase++ Downloads
LOCAL nSuccess
LOCAL oHttp
LOCAL cHtml
nSuccess := 0
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
oHttp := CreateObject("Chilkat.Http")
// Call SetSslCertRequirement to require that the SSL server certificate's domain
// matches only the domain we are intending to communicate with.
// In this example we will test with the URL https://wrong.host.badssl.com/
// which intentionally has an SSL certificate that does not match "wrong.host.badssl.com"
oHttp:SetSslCertRequirement("SAN", "wrong.host.badssl.com")
// Also validate the server cert..
oHttp:RequireSslCertVerify := 1
// Try sending the request. It should fail within the SSL/TLS handshake
// because the server's certificate does not match the domain "wrong.host.badssl.com"
cHtml := oHttp:QuickGetStr("https://wrong.host.badssl.com/")
IF (oHttp:LastMethodSuccess == 0)
? oHttp:LastErrorText
ELSE
? "Unexpected success."
ENDIF
oHttp:destroy()