Sample code for 30+ languages & platforms
Xbase++

Require SSL Server Certificate Domain Match

See more HTTP Examples

Demonstrates how to require that the SSL server certificate's domain matches the intended domain.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oHttp
LOCAL cHtml

nSuccess := 0

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oHttp := CreateObject("Chilkat.Http")

//  Call SetSslCertRequirement to require that the SSL server certificate's domain
//  matches only the domain we are intending to communicate with.

//  In this example we will test with the URL https://wrong.host.badssl.com/
//  which intentionally has an SSL certificate that does not match "wrong.host.badssl.com"

oHttp:SetSslCertRequirement("SAN", "wrong.host.badssl.com")

//  Also validate the server cert..
oHttp:RequireSslCertVerify := 1

//  Try sending the request.  It should fail within the SSL/TLS handshake
//  because the server's certificate does not match the domain "wrong.host.badssl.com"
cHtml := oHttp:QuickGetStr("https://wrong.host.badssl.com/")
IF (oHttp:LastMethodSuccess == 0)
    ? oHttp:LastErrorText
ELSE
    ? "Unexpected success."
ENDIF

oHttp:destroy()