Sample code for 30+ languages & platforms
Xbase++

ScMinidriver - Get Public Keys from Smart Card Key Container

See more ScMinidriver Examples

Demonstrates how to query a key container on a smart card (or USB token) to get the public part of the private keys that are present. A key container can hold two separate private keys -- one in the "signature" position, and the other in the "key exchange" position.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oScmd
LOCAL cReaderName
LOCAL oPubkey_sig
LOCAL oPubkey_kex

nSuccess := 0

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

//  Chilkat recommends the following free tool for interactively examining the contents of your smart card
//  through the ScMinidriver interface:  MGTEK Tool for Minidriver enabled Smart Cards

//  Let's first look at our smart card..
//  Here's the view of our Gemalto (Thales) IDPrime MD T=0 smart card in the MGTEK tool:

//  (image:https://example-code.com/images/gemalto_idprime_after_key_import.JPG/endImage)

oScmd := CreateObject("Chilkat.ScMinidriver")

//  First we need to acquire a context to the smart card in the reader where it is inserted.
//  Reader names (smart card readers or USB tokens) can be discovered
//  via List Readers or Find Smart Cards
cReaderName := "Alcor Micro USB Smart Card Reader 0"
nSuccess := oScmd:AcquireContext(cReaderName)
IF (nSuccess == 0)
    ? oScmd:LastErrorText
    oScmd:destroy()
    RETURN
ENDIF

//  If successful, the name of the currently inserted smart card is available:
? "Card name: " + oScmd:CardName

//  We likely shouldn't need to authenticate with the smart card (use a PIN) to simply get a public key,
//  so we can skip the PIN authenticatin step..

//  Let's get the key(s) present in Container #7.
//  In our case (shown in the image above), there is a private key in the "key exchange" position, but no key in the "signature" position.
oPubkey_sig := CreateObject("Chilkat.PublicKey")
oPubkey_kex := CreateObject("Chilkat.PublicKey")

nSuccess := oScmd:GetContainerKeys(7, oPubkey_sig, oPubkey_kex)
IF (nSuccess == 0)
    ? oScmd:LastErrorText
    oScmd:destroy()
    oPubkey_sig:destroy()
    oPubkey_kex:destroy()
    RETURN
ENDIF

IF (oPubkey_sig:Empty == 1)
    ? "No signature key is present."
ELSE
    ? "Signature key:"
    ? oPubkey_sig:GetPem(1)
ENDIF

IF (oPubkey_kex:Empty == 1)
    ? "No Key Exchange key is present."
ELSE
    ? "Key Exchange key:"
    ? oPubkey_kex:GetPem(1)
ENDIF

oScmd:DeleteContext()

? "Success."

//  Here's the output of the above sample code:

//  Card name: IDPrime MD T=0
//  No signature key is present.
//  Key Exchange key:
//  -----BEGIN RSA PUBLIC KEY-----
//  MIIBCgKCAQEAsXeRhM55P13FbpNcXAMR3olbw2Wa6keZIHu5YTZYUBTlYWId+pNi
//  wUz3zFIEo+0IfYR0H27ybIycQO+1IIzJofUFNMAL3tZps2OKPlsjuCPls6kXpXhv
//  /gvhux8LrCtp4PcKWqJ6QVOZKChc7WAx40qFWzHi57ueqRTv3x0kESqGg/VjsqyT
//  Evb55psJO2RsfhLT7+YVh3hImRM3RDaJdkTkPuOxeFyT6N7VXD09329sLuS3QkUb
//  E9zEKDnz9X3d8dEQdJhSI9ba5fxl8R7fu8pB67ElfzFml96X1jLFtzy1pzOT5Fc4
//  ROcaqlYckVzdBq9sxezm6MYmDBjNAcibRwIDAQAB
//  -----END RSA PUBLIC KEY-----

oScmd:destroy()
oPubkey_sig:destroy()
oPubkey_kex:destroy()