Xbase++
Xbase++
ScMinidriver - Import a Certificate to IDPrime MD T=0 Smart Card
See more ScMinidriver Examples
Demonstrates how to import a certificate and its private key to a key container on an ID Prime MD T=0 smartcard.Note: Requires Chilkat v9.5.0.88 or later. This example only runs on Windows because ScMinidriver is a Windows-only class.
Chilkat Xbase++ Downloads
LOCAL nSuccess
LOCAL oScmd
LOCAL cReaderName
LOCAL cPinId
LOCAL nRetval
LOCAL oCert
LOCAL cPassword
LOCAL nContainerIndex
LOCAL cKeySpec
nSuccess := 0
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
oScmd := CreateObject("Chilkat.ScMinidriver")
// Reader names (smart card readers or USB tokens) can be discovered
// via List Readers or Find Smart Cards
cReaderName := "SCM Microsystems Inc. SCR33x USB Smart Card Reader 0"
nSuccess := oScmd:AcquireContext(cReaderName)
IF (nSuccess == 0)
? oScmd:LastErrorText
oScmd:destroy()
RETURN
ENDIF
// If successful, the name of the currently inserted smart card is available:
? "Card name: " + oScmd:CardName
// The IDPRime MD smart card has 4 different PIN roles:
// "user" -- Primary Card PIN
// "admin" -- Administrator PIN
// "3" -- Digital Signature PIN
// "4" -- Unblock only PIN (PUK)
// To import a certificate to the "IDPrime MD T=0" smart card, we must first PIN authenticate using "user", and then also PIN authenticate using "3" (the Digital Signature PIN)
cPinId := "user"
// (Of course, use your PIN which may be different than "0000")
nRetval := oScmd:PinAuthenticate(cPinId, "0000")
IF (nRetval != 0)
? "PIN Authentication failed."
oScmd:DeleteContext()
oScmd:destroy()
RETURN
ENDIF
oCert := CreateObject("Chilkat.Cert")
// Load the cert + private key from a .p12/.pfx
// We got this .p12 from https://badssl.com/download/
cPassword := "badssl.com"
nSuccess := oCert:LoadPfxFile("qa_data/pfx/badssl.com-client.p12", cPassword)
IF (nSuccess == 0)
? oCert:LastErrorText
oScmd:DeleteContext()
oScmd:destroy()
oCert:destroy()
RETURN
ENDIF
// Also authenticate using "3", the digital signature PIN.
// (Of course, use your PIN which may be different than "12345678")
nRetval := oScmd:PinAuthenticate("3", "12345678")
IF (nRetval != 0)
? "PIN Authentication failed."
oScmd:DeleteContext()
oScmd:destroy()
oCert:destroy()
RETURN
ENDIF
// Let's import this certificate as the "signature" key/cert in key container #6.
nContainerIndex := 6
cKeySpec := "sig"
// Note the last argument (the pin ID) is "3". This is the required PIN ID for the IDPrime MD T=0 smart card.
nSuccess := oScmd:ImportCert(oCert, nContainerIndex, cKeySpec, "3")
IF (nSuccess == 0)
? oScmd:LastErrorText
ELSE
? "Successfully imported the cert + private key onto the smart card."
ENDIF
// Delete the context when finished with the card.
nSuccess := oScmd:DeleteContext()
IF (nSuccess == 0)
? oScmd:LastErrorText
ENDIF
oScmd:destroy()
oCert:destroy()