Sample code for 30+ languages & platforms
Delphi DLL

ScMinidriver - Import a Certificate and Private Key to a Smart Card or USB Token

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on a smart card or USB token.

Note: This functionality was introduced in Chilkat v9.5.0.87.

Note: The ScMinidriver functionality is for Windows-only because ScMinidriver DLLs only exist on Windows.

Chilkat Delphi DLL Downloads

Delphi DLL
uses
    Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics,
    Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, ScMinidriver, Cert;

...

procedure TForm1.Button1Click(Sender: TObject);
var
success: Boolean;
scmd: HCkScMinidriver;
readerName: PWideChar;
pinId: PWideChar;
retval: Integer;
cert: HCkCert;
password: PWideChar;
containerIndex: Integer;
keySpec: PWideChar;

begin
success := False;

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

scmd := CkScMinidriver_Create();

// Reader names (smart card readers or USB tokens) can be discovered
// via List Readers or Find Smart Cards
readerName := 'SCM Microsystems Inc. SCR33x USB Smart Card Reader 0';
success := CkScMinidriver_AcquireContext(scmd,readerName);
if (success = False) then
  begin
    Memo1.Lines.Add(CkScMinidriver__lastErrorText(scmd));
    Exit;
  end;

// If successful, the name of the currently inserted smart card is available:
Memo1.Lines.Add('Card name: ' + CkScMinidriver__cardName(scmd));

// To import a cert + private key, we'll need to be PIN authenticated.
// For more details about smart card PIN authentication, see the Smart Card PIN Authentication Example
pinId := 'user';
retval := CkScMinidriver_PinAuthenticate(scmd,pinId,'000000');
if (retval <> 0) then
  begin
    Memo1.Lines.Add('PIN Authentication failed.');
    CkScMinidriver_DeleteContext(scmd);
    Exit;
  end;

cert := CkCert_Create();

// Load the cert + private key from a .p12/.pfx
// We got this .p12 from https://badssl.com/download/
password := 'badssl.com';
success := CkCert_LoadPfxFile(cert,'qa_data/pfx/badssl.com-client.p12',password);
if (success = False) then
  begin
    Memo1.Lines.Add(CkCert__lastErrorText(cert));
    CkScMinidriver_DeleteContext(scmd);
    Exit;
  end;

// Let's import this certificate as the "signature" key/cert in key container #6.
containerIndex := 6;
keySpec := 'sig';
success := CkScMinidriver_ImportCert(scmd,cert,containerIndex,keySpec,pinId);
if (success = False) then
  begin
    Memo1.Lines.Add(CkScMinidriver__lastErrorText(scmd));
  end
else
  begin
    Memo1.Lines.Add('Successfully imported the cert + private key onto the smart card.');
  end;

// When finished with operations that required authentication, you may if you wish, deauthenticate the session.
success := CkScMinidriver_PinDeauthenticate(scmd,'user');
if (success = False) then
  begin
    Memo1.Lines.Add(CkScMinidriver__lastErrorText(scmd));
  end;

// Delete the context when finished with the card.
success := CkScMinidriver_DeleteContext(scmd);
if (success = False) then
  begin
    Memo1.Lines.Add(CkScMinidriver__lastErrorText(scmd));
  end;

CkScMinidriver_Dispose(scmd);
CkCert_Dispose(cert);

end;