Sample code for 30+ languages & platforms
SQL Server

Find Certificate by Email Address

See more Cert Store Examples

Demonstrates how to find a certificate having the specified email address either within the cert's subject email, or the RFC822 name.

In an X.509 certificate, an email address can typically be located in two places:

  1. RFC822 Name (Subject Alternative Name extension) -
    • The certificate may include an email address in the Subject Alternative Name (SAN) extension under the RFC822 Name field. This is a modern and preferred method because it allows for flexibility and alignment with security best practices.
    • To find it, Chilkat inspects the SAN extension in the certificate details.
  2. Subject (Common Name or Email Address attribute) -
    • Older certificates may store the email address directly in the Subject field, typically under the Email Address attribute ("emailAddress") or, less commonly, the Common Name (CN).
    • This method is less preferred in modern standards but can still be encountered in legacy implementations. Chilkat also searches here for the email address.

Note: Requires Chilkat v10.1.2 or later.

Chilkat SQL Server Downloads

SQL Server
-- Important: See this note about string length limitations for strings returned by sp_OAMethod calls.
--
CREATE PROCEDURE ChilkatSample
AS
BEGIN
    DECLARE @hr int
    -- Important: Do not use nvarchar(max).  See the warning about using nvarchar(max).
    DECLARE @sTmp0 nvarchar(4000)
    DECLARE @success int
    SELECT @success = 0

    DECLARE @certStore int
    EXEC @hr = sp_OACreate 'Chilkat.CertStore', @certStore OUT
    IF @hr <> 0
    BEGIN
        PRINT 'Failed to create ActiveX component'
        RETURN
    END

    -- This opens the Current User certificate store on Windows,
    -- On MacOS and iOS it opens the default Keychain.
    DECLARE @readOnly int
    SELECT @readOnly = 0
    EXEC sp_OAMethod @certStore, 'OpenCurrentUserStore', @success OUT, @readOnly
    IF @success = 0
      BEGIN
        EXEC sp_OAGetProperty @certStore, 'LastErrorText', @sTmp0 OUT
        PRINT @sTmp0
        EXEC @hr = sp_OADestroy @certStore
        RETURN
      END

    -- Find the certificate having the specified email address in either the RFC822 Name or in the Subject.
    DECLARE @json int
    EXEC @hr = sp_OACreate 'Chilkat.JsonObject', @json OUT

    DECLARE @email_address nvarchar(4000)
    SELECT @email_address = 'joe@example.com'
    EXEC sp_OAMethod @json, 'UpdateString', @success OUT, 'email', @email_address

    DECLARE @cert int
    EXEC @hr = sp_OACreate 'Chilkat.Cert', @cert OUT

    EXEC sp_OAMethod @certStore, 'FindCert', @success OUT, @json, @cert
    IF @success = 1
      BEGIN
        -- Show the full distinguished name of the certificate.

        EXEC sp_OAGetProperty @cert, 'SubjectDN', @sTmp0 OUT
        PRINT 'Found: ' + @sTmp0
      END
    ELSE
      BEGIN

        PRINT 'Not found.'
      END

    EXEC @hr = sp_OADestroy @certStore
    EXEC @hr = sp_OADestroy @json
    EXEC @hr = sp_OADestroy @cert


END
GO